Dominik Lenoch created ARTEMIS-3839:
---------------------------------------

             Summary: Upgrade jboss-logging 3.4.3.Final dependency due to 
false-positive vulnerability reports 
                 Key: ARTEMIS-3839
                 URL: https://issues.apache.org/jira/browse/ARTEMIS-3839
             Project: ActiveMQ Artemis
          Issue Type: Dependency upgrade
          Components: Broker
    Affects Versions: 2.22.0
            Reporter: Dominik Lenoch


Upgrade org.jboss.logging:jboss-logging due to dependency on old version of 
log4j with known vulnerabilities. These vulnerabilities do not apply to 
jboss-logging, log4j is only used there for facades, but the scan reports false 
positive vulnerabilities due to this. 



--
This message was sent by Atlassian Jira
(v8.20.7#820007)

Reply via email to