From 72c42e171933381e7b3da7bd8e5b6d473ed912bf Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 27 Apr 2026 19:17:12 +0000 Subject: [PATCH] Bump org.apache.logging.log4j:log4j-api from 2.25.3 to 2.25.4 Bumps org.apache.logging.log4j:log4j-api from 2.25.3 to 2.25.4. --- updated-dependencies: - dependency-name: org.apache.logging.log4j:log4j-api dependency-version: 2.25.4 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] --- graphql-dgs-platform/build.gradle.kts | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/graphql-dgs-platform/build.gradle.kts b/graphql-dgs-platform/build.gradle.kts index 6ba0ba8ba..6069bb882 100644 --- a/graphql-dgs-platform/build.gradle.kts +++ b/graphql-dgs-platform/build.gradle.kts @@ -78,10 +78,10 @@ dependencies { version { require("3.6.1") } } // CVEs - api("org.apache.logging.log4j:log4j-to-slf4j:2.25.3") { + api("org.apache.logging.log4j:log4j-to-slf4j:2.25.4") { because("Refer to CVE-2021-44228; https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44228") } - api("org.apache.logging.log4j:log4j-api:2.25.3") { + api("org.apache.logging.log4j:log4j-api:2.25.4") { because("Refer to CVE-2021-44228; https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44228") } api("io.micrometer:context-propagation") {