-
Notifications
You must be signed in to change notification settings - Fork 424
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
TEZ-4403: Upgrade SLF4J Version To 1.7.36 #198
Conversation
This comment was marked as outdated.
This comment was marked as outdated.
@abstractdog Could you please review the changes? |
@abstractdog Can you please review the changes? |
thanks for taking care of this @shameersss1! |
This comment was marked as outdated.
This comment was marked as outdated.
@abstractdog - i have upgraded the version to 1.7.36 and re-triggered the pre-commit |
💔 -1 overall
This message was automatically generated. |
Currently we are on slf4j 1.7.30, As per https://mvnrepository.com/artifact/org.slf4j/slf4j-log4j12/1.7.30 , There are four CVE's against this version.
Upgrading to 1.7.36 https://mvnrepository.com/artifact/org.slf4j/slf4j-log4j12/1.7.36 should solve the security concerns.
Reference