mirror of https://github.com/OpenIdentityPlatform/OpenDJ.git

Valery Kharseko
25.26.2024 fd6b8539953a938307e338ac3395b67eb3f1b892
CVE-2024-12798 CVE-2024-12801 logback-core Expression Language Injection, Server-Side Request Forgery vulnerability (#455)

1 files modified
4 ■■■■ changed files
opendj-embedded/pom.xml 4 ●●●● patch | view | raw | blame | history
opendj-embedded/pom.xml
@@ -38,7 +38,7 @@
        <dependency>
            <groupId>ch.qos.logback</groupId>
            <artifactId>logback-core</artifactId>
            <version>1.2.13</version>
            <version>1.5.13</version>
            <exclusions>
                <exclusion>
                    <artifactId>slf4j-api</artifactId>
@@ -49,7 +49,7 @@
        <dependency>
            <groupId>ch.qos.logback</groupId>
            <artifactId>logback-classic</artifactId>
            <version>1.2.13</version>
            <version>1.5.13</version>
            <exclusions>
                <exclusion>
                    <artifactId>slf4j-api</artifactId>