Forum Discussion

tiggyboo's avatar
tiggyboo
Occasional Visitor
3 years ago

Swagger/Log4j/ElasticSearch

I see that Swagger Open Source doesn't require mitigation - but when I attempt to remove log4j libraries in my app, all the errors are Swagger oriented.  So is it the case that there are embedded ElasticSearch dependencies?  If that's the case, what is the best way to go about mitigation?  I.e., upgrade to a swagger with a cleaned up ES component maybe?  Other suggestions?  Just in case I'm talking apples and oranges, I'm using Swagger UI 2.0 (hope I made that determination correctly.)  Any suggestions much appreciated!

No RepliesBe the first to reply