Dominik Lenoch created ARTEMIS-3839:
---------------------------------------
Summary: Upgrade jboss-logging 3.4.3.Final dependency due to
false-positive vulnerability reports
Key: ARTEMIS-3839
URL: https://issues.apache.org/jira/browse/ARTEMIS-3839
Project: ActiveMQ Artemis
Issue Type: Dependency upgrade
Components: Broker
Affects Versions: 2.22.0
Reporter: Dominik Lenoch
Upgrade org.jboss.logging:jboss-logging due to dependency on old version of
log4j with known vulnerabilities. These vulnerabilities do not apply to
jboss-logging, log4j is only used there for facades, but the scan reports false
positive vulnerabilities due to this.
--
This message was sent by Atlassian Jira
(v8.20.7#820007)