Skip to content

[Cycode] Fix for vulnerable manifest file dependency - org.apache.logging.log4j:log4j-core updated to version 2.25.3#104

Open
cycode-security[bot] wants to merge 1 commit intomasterfrom
cycode-fix-suggestion-manifest-dependency-update-d7d6a398-4567-4afd-a7b5-ae620df22b40
Open

[Cycode] Fix for vulnerable manifest file dependency - org.apache.logging.log4j:log4j-core updated to version 2.25.3#104
cycode-security[bot] wants to merge 1 commit intomasterfrom
cycode-fix-suggestion-manifest-dependency-update-d7d6a398-4567-4afd-a7b5-ae620df22b40

Conversation

@cycode-security
Copy link
Copy Markdown

Cycode Vulnerable Dependencies Update

This pull request updates the following manifest file:

File Path Number of packages to update
pom.xml 1

📂 pom.xml

1 package will be updated to resolve vulnerabilities:

Package Name Current Version Updated Version
org.apache.logging.log4j:log4j-core 2.24.3 2.25.3

…ging.log4j:log4j-core updated to version 2.25.3
@yotamloe yotamloe closed this Jan 25, 2026
@yotamloe yotamloe reopened this Jan 25, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant