-
Sub-task
-
Resolution: Done
-
Medium
-
None
-
None
-
Policy 6/8-6/19, Policy 6/23-7/06
In policy/common log4j is inherited by all the other policy projects. Task is to upgrade to:
log4j : 1.2.17 | CVE-2019-17571 | 9 | 2.13.1 (log4j-core) |
eg Remove that dependency and use log4j-core