Browse Source

【依赖升级】jdk8 版本的 logback 升级到 1.2.13 避免安全漏洞

YunaiV 7 months ago
parent
commit
cca420d68d
1 changed files with 13 additions and 0 deletions
  1. 13 0
      yudao-dependencies/pom.xml

+ 13 - 0
yudao-dependencies/pom.xml

@@ -76,6 +76,8 @@
         <jimureport.version>1.7.8</jimureport.version>
         <xercesImpl.version>2.12.2</xercesImpl.version>
         <weixin-java.version>4.6.0</weixin-java.version>
+        <!-- 专属于 JDK8 安全漏洞升级 -->
+        <logback.version>1.2.13</logback.version> <!-- 无法使用 1.3.X 版本,启动会报错 -->
     </properties>
 
     <dependencyManagement>
@@ -625,6 +627,17 @@
                 <version>${xercesImpl.version}</version>
             </dependency>
 
+            <!-- 专属于 JDK8 安全漏洞升级 -->
+            <dependency>
+                <groupId>ch.qos.logback</groupId>
+                <artifactId>logback-core</artifactId>
+                <version>${logback.version}</version>
+            </dependency>
+            <dependency>
+                <groupId>ch.qos.logback</groupId>
+                <artifactId>logback-classic</artifactId>
+                <version>${logback.version}</version>
+            </dependency>
         </dependencies>
     </dependencyManagement>