log4j vulnerability fix with maven