Thank you for your comments. The attack surface of JDBC connections is remarkably large and varied. Given our time constraints, we have not had the time to ascertain with 100% certitude that JDBC-based appenders do not pose a risk. For any user wishing to use DBAppender, the code is available in github and would be very easy to add. We decided not to take responsibility potential vulnerabilities for DBAppender at present time. This does not mean DBAppender is insecure but only that we did not have the time to perform the due diligence which is not always easy to get right. As you can imagine, we have a lot on our plate. If you wish to influence the project reoadmap, please have a look at our sponsorship options. |