ilan-WS / logging-log4j2

Mirror of Apache Logging Log4J2
Apache License 2.0
0 stars 0 forks source link

Update dependency org.apache.commons:commons-dbcp2 to v2.7.0 - autoclosed #24

Closed mend-for-github-com[bot] closed 2 years ago

mend-for-github-com[bot] commented 2 years ago

This PR contains the following updates:

Package Update Change
org.apache.commons:commons-dbcp2 (source) minor 2.5.0 -> 2.7.0

By merging this PR, the below vulnerabilities will be automatically resolved:

Severity CVSS Score CVE
Low Low 3.0 WS-2020-0287