eclipse / kapua

Eclipse Public License 2.0
222 stars 160 forks source link

⬆️ Bump `logback` from `1.2.11` to `1.2.13` - `CVE-2023-6481` #4036

Closed MDeLuise closed 3 months ago

MDeLuise commented 3 months ago

This pull request addresses CVE-2023-6481 by updating the logback library to the 1.2.13 version. The vulnerability posed a risk, and this update mitigates it effectively.

codecov-commenter commented 3 months ago

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Project coverage is 16.67%. Comparing base (c215cc9) to head (45efedd).

Additional details and impacted files [![Impacted file tree graph](https://app.codecov.io/gh/eclipse/kapua/pull/4036/graphs/tree.svg?width=650&height=150&src=pr&token=1P4N4CApH8&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=eclipse)](https://app.codecov.io/gh/eclipse/kapua/pull/4036?src=pr&el=tree&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=eclipse) ```diff @@ Coverage Diff @@ ## develop #4036 +/- ## ============================================= - Coverage 16.71% 16.67% -0.04% Complexity 22 22 ============================================= Files 2009 2009 Lines 52223 52223 Branches 4437 4437 ============================================= - Hits 8728 8708 -20 - Misses 43092 43112 +20 Partials 403 403 ``` [see 2 files with indirect coverage changes](https://app.codecov.io/gh/eclipse/kapua/pull/4036/indirect-changes?src=pr&el=tree-more&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=eclipse)