Bump log4j-core from 2.10.0 to 2.13.2 - Closes #81
Bumps log4j-core from 2.10.0 to 2.13.2.
Change-Id: Ifacf26b63a6fffb6285dbe437c22a9c9fe397e51
Signed-off-by: dependabot[bot] <support@github.com>
diff --git a/Changes b/Changes
index 5407915..eb96cf5 100644
--- a/Changes
+++ b/Changes
@@ -1,8 +1,11 @@
-0.59.2 2020-06-18
+0.59.2 2020-07-24
- [feature] Add fingerprint method to index (diewald)
- [bugfix] Fix deserialization of spans with attributes (diewald)
- [bugfix] Change order of attribute payloads in attribute queries
(diewald)
+ - [bugfix] Security upgrade of Log4J for CVE-2020-9488
+ (dependabot, diewald)
+
Warning: This may break compatibility for attribute queries
in indices not created using KorAP::XML::Krill.