]> source.dussan.org Git - sonarqube.git/commitdiff
NO-JIRA exclude log4j 1.x from apacheds-server-integ to kill the noise about CVE...
authorPierre <pierre.guillot@sonarsource.com>
Fri, 19 May 2023 09:38:29 +0000 (11:38 +0200)
committersonartech <sonartech@sonarsource.com>
Fri, 19 May 2023 20:02:38 +0000 (20:02 +0000)
sonar-testing-ldap/build.gradle

index bd0d8026b1bc08f309189f6194b74b4f86091309..d8c19eccf0de5bdbe86ba60afbc7c8e73f931cda 100644 (file)
@@ -6,7 +6,9 @@ sonar {
 
 dependencies {
     api 'org.apache.mina:mina-core:2.2.1'
-    implementation 'org.apache.directory.server:apacheds-server-integ:2.0.0.AM26'
+    implementation ('org.apache.directory.server:apacheds-server-integ:2.0.0.AM26') {
+        exclude group: 'log4j', module: 'log4j'
+    }
 
     testImplementation 'junit:junit'
     testImplementation 'org.assertj:assertj-core'