billmcchesney1 / pacbot

PacBot (Policy as Code Bot)
https://tmobile.github.io/pacbot/
Apache License 2.0
0 stars 0 forks source link

Update dependency org.apache.logging.log4j:log4j-core to v2.12.2 #387

Open mend-for-github-com[bot] opened 1 year ago

mend-for-github-com[bot] commented 1 year ago

This PR contains the following updates:

Package Type Update Change
org.apache.logging.log4j:log4j-core (source) compile minor 2.9.0 -> 2.12.2

By merging this PR, the below issues will be automatically resolved and closed:

Severity CVSS Score CVE GitHub Issue
Critical 10.0 CVE-2021-44228 #248
Critical 9.0 CVE-2021-45046 #259