att / EELF

Event and Error Logging Framework
9 stars 4 forks source link

Security issue with logback #4

Open pdragosh opened 6 years ago

pdragosh commented 6 years ago

The ONAP projects from OpenECOMP uses EELF. They are being flagged with security issue due to EELF dependency logback: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-5929

Can you upgrade the version of logback above 1.2 and release an upgraded artifact?