summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorniamhcore <niamh.core@est.tech>2021-12-15 11:23:56 +0000
committerNiamh Core <niamh.core@est.tech>2021-12-16 09:43:37 +0000
commitc712c71eba469bde43790ceb14fc8748417e0a29 (patch)
treed60ab0955639846bd5da1715babf11bbbceccd25
parentb17558f422625b3f58e6eaa8f9df94913dd348a0 (diff)
Update log4j version due to security vulnerability for NCMP-DMI
This change excludes old log4j libraries and includes newer versions that are not tagged with a security vulnerability. Issue-ID: CPS-820 Signed-off-by: niamhcore <niamh.core@est.tech> Change-Id: I2694cdc66449a9634dfe726b39736a8b0ba67e5a (cherry picked from commit 983510777aead2f8827c5f74fa54193884ef79aa)
-rw-r--r--pom.xml10
1 files changed, 10 insertions, 0 deletions
diff --git a/pom.xml b/pom.xml
index d3e25b6e..9b258623 100644
--- a/pom.xml
+++ b/pom.xml
@@ -62,6 +62,16 @@
<type>pom</type>
<scope>import</scope>
</dependency>
+ <dependency>
+ <groupId>org.apache.logging.log4j</groupId>
+ <artifactId>log4j-api</artifactId>
+ <version>2.16.0</version>
+ </dependency>
+ <dependency>
+ <groupId>org.apache.logging.log4j</groupId>
+ <artifactId>log4j-to-slf4j</artifactId>
+ <version>2.16.0</version>
+ </dependency>
</dependencies>
</dependencyManagement>
<dependencies>