Skip to content

Conversation

@tsmock
Copy link
Contributor

@tsmock tsmock commented Dec 16, 2021

Move to slf4j logging throughout atlas generator.

I should have used slf4j initially, anyway.

There should be no impact on downstream projects.

See also

@tsmock
Copy link
Contributor Author

tsmock commented Dec 16, 2021

Note: We can use dependency substitution to use the osgeo -norce version instead of excluding osgeo.

@atiannicelli
Copy link
Contributor

log4j 2.16.0 creates another vulnerability (CVE-2021-45105). So we need to upgrade to 2.17.0

@tsmock
Copy link
Contributor Author

tsmock commented Jan 4, 2022

log4j 2.16.0 creates another vulnerability (CVE-2021-45105). So we need to upgrade to 2.17.0

atlas-generator does not explicitly depend upon Log4J. It is visible from atlas.

@sonarqubecloud
Copy link

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

@sonarqubecloud
Copy link

sonarqubecloud bot commented Apr 9, 2022

Kudos, SonarCloud Quality Gate passed!    Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

@adahn6 adahn6 merged commit 60b1622 into osmlab:dev Apr 9, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants