Description
There is another CVE in 2.16: https://logging.apache.org/log4j/2.x/security.html. We should upgrade to log4j 2.17.
Attachments
Issue Links
- is related to
-
SPARK-6305 Add support for log4j 2.x to Spark
- Resolved
- links to