You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
On January 20, 2022, the PSIRT found that Apache officially released a risk notice for Log4j (version 1.x). The vulnerability ID is CVE-2022-23302,CVE-2022-23305,CVE-2022-23307. The corresponding components are JMSSink, JDBCAppender, and Chainsaw. Vulnerability Level: Major; Vulnerability Score: 9.8. These vulnerabilities affect only Log4j 1.x. Log4j 2 is not affected.
Mondrian 8.2.0.5 uses log4j 1.2.14. Are these vulnerabilities involved?
The text was updated successfully, but these errors were encountered:
On January 20, 2022, the PSIRT found that Apache officially released a risk notice for Log4j (version 1.x). The vulnerability ID is CVE-2022-23302,CVE-2022-23305,CVE-2022-23307. The corresponding components are JMSSink, JDBCAppender, and Chainsaw. Vulnerability Level: Major; Vulnerability Score: 9.8. These vulnerabilities affect only Log4j 1.x. Log4j 2 is not affected.
Mondrian 8.2.0.5 uses log4j 1.2.14. Are these vulnerabilities involved?
The text was updated successfully, but these errors were encountered: