This is an automated email from the ASF dual-hosted git repository.
zhangduo pushed a commit to branch branch-2.5
in repository https://gitbox.apache.org/repos/asf/hbase.git
The following commit(s) were added to refs/heads/branch-2.5 by this push:
new b8c1e35c1df HBASE-29792 Bump org.apache.logging.log4j:log4j-core from
2.17.2 to 2.25.3 (#7570)
b8c1e35c1df is described below
commit b8c1e35c1df34cf36ae34da0cc6092e091ca970b
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
AuthorDate: Sat Dec 20 21:48:02 2025 +0800
HBASE-29792 Bump org.apache.logging.log4j:log4j-core from 2.17.2 to 2.25.3
(#7570)
Bumps org.apache.logging.log4j:log4j-core from 2.17.2 to 2.25.3.
---
updated-dependencies:
- dependency-name: org.apache.logging.log4j:log4j-core
dependency-version: 2.25.3
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot]
<49699333+dependabot[bot]@users.noreply.github.com>
Signed-off-by: Duo Zhang <[email protected]>
(cherry picked from commit 4fdd23fe5d77b302a7c57bcf1c406b14e14057a3)
---
pom.xml | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/pom.xml b/pom.xml
index c2fa37ef716..24923772189 100644
--- a/pom.xml
+++ b/pom.xml
@@ -600,7 +600,7 @@
<opentelemetry.version>1.49.0</opentelemetry.version>
<opentelemetry-semconv.version>1.29.0-alpha</opentelemetry-semconv.version>
<opentelemetry-javaagent.version>2.15.0</opentelemetry-javaagent.version>
- <log4j2.version>2.17.2</log4j2.version>
+ <log4j2.version>2.25.3</log4j2.version>
<mockito.version>4.11.0</mockito.version>
<byte-buddy.version>1.15.11</byte-buddy.version>
<!--Internally we use a different version of protobuf. See
hbase-protocol-shaded-->