git-as-svn / git-as-svn

Subversion frontend server for Git repositories

Home Page:https://git-as-svn.github.io/git-as-svn/htmlsingle/git-as-svn.html

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

log4j

mkunzecw opened this issue · comments

Are you aware of any log4j version that is not vulnerable?

2.17.0 is also broken: https://nvd.nist.gov/vuln/detail/CVE-2021-44832

Possibly the proper fix is to get rid of log4j completely.

git-as-svn 2.0.0 was just released. It includes log4j 2.17.1.

agree, but thanks for the fix!