[ https://issues.apache.org/jira/browse/CASSANDRA-15829?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17262544#comment-17262544 ]
Benjamin Lerer commented on CASSANDRA-15829: -------------------------------------------- [~mdenihan] Do you plan to provide a path for this issue or should we find somebody to work on it? > Upgrade to logback 1.2.3 to address CVE-2017-5929 > ------------------------------------------------- > > Key: CASSANDRA-15829 > URL: https://issues.apache.org/jira/browse/CASSANDRA-15829 > Project: Cassandra > Issue Type: Bug > Components: Dependencies > Reporter: Kevin Eveker > Priority: High > Fix For: 2.2.x, 3.0.x, 3.11.x > > > Recent scan results identified the following CVE that requires this upgrade > to address > [https://nvd.nist.gov/vuln/detail/CVE-2017-5929] -- This message was sent by Atlassian Jira (v8.3.4#803005) --------------------------------------------------------------------- To unsubscribe, e-mail: commits-unsubscr...@cassandra.apache.org For additional commands, e-mail: commits-h...@cassandra.apache.org