Details
-
Improvement
-
Status: Closed
-
Major
-
Resolution: Fixed
-
None
Description
Although the infamous Log4J vulnerability is not relevant for DataFu (we are dependent on log4j 1.x, which is not affected) it is still a pretty good idea to upgrade to a new version.
The upgrade should keep our logs as similar as possible to the existing version, but this shouldn't necessitate a major version release since this isn't a breaking change.
We can start by fixing this for datafu-spark (we don't need to update the other projects since they might be deprecated soon)