Skip to content
This repository was archived by the owner on Jan 19, 2024. It is now read-only.
This repository was archived by the owner on Jan 19, 2024. It is now read-only.

[BUG] CVE-2017-5645 - upgrade org.apache.logging.log4j:log4j-core to version 2.8.2 or higher #141

@danielgrigg-skyfii

Description

@danielgrigg-skyfii

Describe the bug
See https://www.cve.org/CVERecord?id=CVE-2017-5645

To Reproduce
See https://www.cve.org/CVERecord?id=CVE-2017-5645

Expected behavior
Not be vulnerable to https://www.cve.org/CVERecord?id=CVE-2017-5645

Screenshots
N/A

Code snippet
N/A

Environment
com.github.salesforce-marketingcloud:fuelsdk@1.6.0

The bug has the severity

  • [x ] Critical: The defect affects critical functionality or critical data. It does not have a workaround.
  • Major: The defect affects major functionality or major data. It has a workaround but is not obvious and is difficult.
  • Minor: The defect affects minor functionality or non-critical data. It has an easy workaround.
  • Trivial: The defect does not affect functionality or data. It does not even need a workaround. It does not impact productivity or efficiency. It is merely an inconvenience.

Additional context

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions