Uploaded image for project: 'Xray for Maven'
  1. Xray for Maven
  2. XRAYMAVEN-10

Upgrade log4j dependency

    XporterXMLWordPrintable

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Done
    • Maven R1.1.0
    • Maven R1.1.1, Maven R1.1.2
    • None
    • UNCOVERED

    Description

      Upgrade log4j in Client-core.

      The current version is old and suffers from the following vulnerability:

      Should be updated to log4j 2.16 also to fix the following vulnerabilities:

       

      Attachments

        Activity

          People

            hslb Hugo Braz [X] (Inactive)
            dmdu David Duarte
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Time Tracking

                Estimated:
                Original Estimate - Not Specified
                Not Specified
                Remaining:
                Remaining Estimate - 0 minutes
                0m
                Logged:
                Time Spent - 1 hour, 50 minutes
                1h 50m