summaryrefslogtreecommitdiffstats
path: root/pom.xml
diff options
context:
space:
mode:
authorvv770d <vv770d@att.com>2021-12-14 23:35:34 +0000
committerVijay Venkatesh Kumar <vv770d@att.com>2021-12-16 15:02:52 +0000
commit4658e10df3ba0c27270a22770ec9dd938e076abc (patch)
tree81af77e9c0f9f9042a7af9ddd2c19df88f9776a8 /pom.xml
parentb158d136b8d8f84afd8bde6e9646771b4ed9511c (diff)
[DCAE/restconf] Remediation for Log4Shell vulnerability
Change-Id: I7473966be5012bd68244cb60d5fabee22dfa0cf1 Signed-off-by: vv770d <vv770d@att.com> Issue-ID: DCAEGEN2-3022 (cherry picked from commit 77e8a5597b93b55ba152890b7c8511495ee1af41)
Diffstat (limited to 'pom.xml')
-rw-r--r--pom.xml16
1 files changed, 13 insertions, 3 deletions
diff --git a/pom.xml b/pom.xml
index 2eb0b30..6349069 100644
--- a/pom.xml
+++ b/pom.xml
@@ -2,7 +2,7 @@
<!--
================================================================================
Copyright (c) 2019 Huawei. All rights reserved.
-Copyright (c) 2019 AT&T. All rights reserved.
+Copyright (c) 2019,2021 AT&T. All rights reserved.
================================================================================
Licensed under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License.
@@ -27,7 +27,7 @@ limitations under the License.
</parent>
<groupId>org.onap.dcaegen2.collectors.restconf</groupId>
<artifactId>restconfcollector</artifactId>
- <version>1.2.5-SNAPSHOT</version>
+ <version>1.2.6-SNAPSHOT</version>
<name>dcaegen2-collectors-restconf</name>
<description>RestConfCollector</description>
<properties>
@@ -435,7 +435,7 @@ limitations under the License.
<dependency>
<groupId>org.springframework.boot</groupId>
<artifactId>spring-boot-starter-log4j2</artifactId>
- <version>2.1.5.RELEASE</version>
+ <version>2.6.1</version>
<exclusions>
<exclusion>
<groupId>org.apache.logging.log4j</groupId>
@@ -444,6 +444,16 @@ limitations under the License.
</exclusions>
</dependency>
<dependency>
+ <groupId>org.apache.logging.log4j</groupId>
+ <artifactId>log4j-core</artifactId>
+ <version>2.16.0</version>
+ </dependency>
+ <dependency>
+ <groupId>org.apache.logging.log4j</groupId>
+ <artifactId>log4j-api</artifactId>
+ <version>2.16.0</version>
+ </dependency>
+ <dependency>
<groupId>io.springfox</groupId>
<artifactId>springfox-swagger2</artifactId>
<version>3.0.0</version>