-
-
Notifications
You must be signed in to change notification settings - Fork 113
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
BE: upgrade logback to 1.5.16 #773
Conversation
cd5ffcd
to
588862c
Compare
The only challenge is that the project will remain vulnerable to these CVEs until this upgrade can happen so hopefully we can complete the Gradle migration soon |
I've been told a few days |
588862c
to
f5d801a
Compare
@yeikel let's bump spring boot instead? |
That works for me. |
What changes did you make? (Give an overview)
Fixes CVE-2024-12798 and CVE-2024-12801 while we wait for the next Spring Boot Release
How Has This Been Tested? (put an "x" (case-sensitive!) next to an item)
Cherry-picked 150b7af to test with changes in #745
Without this PR : https://github.com/kafbat/kafka-ui/actions/runs/12760141709/job/35565086663?pr=745
With this PR: https://github.com/kafbat/kafka-ui/actions/runs/12760148833/job/35565105573?pr=773
Checklist (put an "x" (case-sensitive!) next to all the items, otherwise the build will fail)
A picture of a cute animal (not mandatory but encouraged)