Security fix for CVE-2022-42003

Change-Id: I0457221ad7941395f03b5c3a3f6f7045105bff3e
diff --git a/Changes b/Changes
index d479022..8591821 100644
--- a/Changes
+++ b/Changes
@@ -1,3 +1,7 @@
+0.2.8 2022-10-05
+    - Upgrade dependencies following dependabot.
+      This fixes CVE-2022-42003! Please update!
+
 0.2.7 2021-10-13
     - Upgrade dependency on Junit following dependabot.
     - Upgrade dependency on Jackson following dependabot.