There is a CVE with OkHttp below 4.9.2. Unfortunately, you are still using the old artifact which is not maintained anymore and has been moved to okhttp3 with incompatible signatures. Do you plan to move to a more recent version of OkHttp?
https://ossindex.sonatype.org/vulnerability/CVE-2021-0341?component-type=maven&component-name=com.squareup.okhttp%2Fokhttp