natefinch / lumberjack

lumberjack is a log rolling package for Go
MIT License
4.81k stars 593 forks source link

Remove dependency on gopkg.in/yaml.v2 #175

Closed nikhita closed 1 year ago

nikhita commented 1 year ago

Ref: https://github.com/natefinch/lumberjack/issues/162#issuecomment-1159223786

@natefinch can we merge this and get a new tag cut v2.2? It'll help consumers of this library to update to a newer version and avoid the CVEs in gopkg.in/yaml.v2.

natefinch commented 1 year ago

I'll take a look today.

nikhita commented 1 year ago

@natefinch ping on this :)

nikhita commented 1 year ago

@natefinch thanks! Can we get a new tag cut v2.2? It'll help consumers of this library to update to a newer version and avoid the CVEs in gopkg.in/yaml.v2.