Conversation
… reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JAVA-CHQOSLOGBACK-15062482
|
This major version upgrade from 1.2.0 to 1.5.25 introduces significant breaking changes, including a required JDK and SLF4J version bump, which can cause logging to fail if not addressed. Highlights:
Source: Logback documentation
|
|
This major version upgrade from 1.2.0 to 1.5.25 introduces significant breaking changes, including new runtime and dependency requirements, and API modifications. Highlights:
Source: Logback documentation
|
Snyk has created this PR to fix 1 vulnerabilities in the maven dependencies of this project.
Snyk changed the following file(s):
samples/server/petstore/jaxrs-cxf-annotated-base-path/pom.xmlVulnerabilities that will be fixed with an upgrade:
SNYK-JAVA-CHQOSLOGBACK-15062482
1.2.0->1.5.25ch.qos.logback:logback-core:
1.2.0->1.5.25No Path FoundNo Known ExploitImportant
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.