DEV-REPO-URIEL / WSD-2772

0 stars 0 forks source link

Update dependency org.apache.logging.log4j:log4j-core to v2.23.0 - autoclosed #2

Closed dev-mend-for-github-com[bot] closed 8 months ago

dev-mend-for-github-com[bot] commented 1 year ago

This PR contains the following updates:

Package Type Update Change
org.apache.logging.log4j:log4j-core (source) compile minor 2.10.0 -> 2.23.0

This PR resolves the vulnerabilities described in Issue #4


Version 2.10.0 | Risk Change | Critical | High | Medium | Low | | --- | --- | --- | --- | --- | | N/A | 2 | 0 | 0 | 1 |
Version 2.23.0 | Risk Change | Critical | High | Medium | Low | | --- | --- | --- | --- | --- | | -100% | 0 (-2 ) | 0 (--) | 0 (--) | 0 (-1 ) |

Mend ensures you have the greatest risk reduction ("Recommended Fix"-highlighted in green) by removing as many vulnerabilities as possible. Click to see how we calculate risk reduction.