digst / OIOSAML.Java

Other
11 stars 11 forks source link

log4j2 dependency security upgrade #60

Closed jpramming closed 2 years ago

jpramming commented 2 years ago

The fix for CVE-2021-44228 provided by log4j2 did not completely solve the issue. We must upgrade to 2.16.0 to mitigate the issue (CVE-2021-45046)