Skip to content

Update log4j version to 2.17.1#891

Open
technoLord wants to merge 1 commit intolightbody:masterfrom
cyberstormdotmu:master
Open

Update log4j version to 2.17.1#891
technoLord wants to merge 1 commit intolightbody:masterfrom
cyberstormdotmu:master

Conversation

@technoLord
Copy link
Copy Markdown

@vivekganesan01
Copy link
Copy Markdown

@technoLord Any ETA on this release?

@johng42
Copy link
Copy Markdown

johng42 commented Apr 20, 2022

I opened an issue #893 to request a new release with this fix included.

Copy link
Copy Markdown

@johng42 johng42 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I believe

<bouncycastle.version>1.58</bouncycastle.version> (line 80)

needs to be
<bouncycastle.version>1.6</bouncycastle.version>

as well since bouncycastle 1.58 uses an older log4j

@dibyaranjan-pg
Copy link
Copy Markdown

Is there any update on this? when this shall be released.

@konflic
Copy link
Copy Markdown

konflic commented Jun 29, 2023

looks like this project is abandoned

@johng42
Copy link
Copy Markdown

johng42 commented Jun 29, 2023

Yeah, I figured as much. If anyone ever picks it up this needs to be fixed. Until then if anyone is using this dependency, you will either need to fork and patch it locally or force maven to use only newer versions of log4j

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants