We are facing log4j vulnerability in lucee 5.3.1.91. Tried to do exclusion through pom but its not working. If you could help on how we can remove log4j 1.2.17. else we are trying to upgrade to 5.3.9.133 but application is breaking at many places, especially date related functionality
Don’t forget to tell us about your stack!
OS: linux
Java Version: 11
Tomcat Version:apache-tomcat-8.5.31
Lucee Version:5.3.9.1333