Your best bet is to search the mailing list archive: https://lists.apache.org/list?dev@flume.apache.org <https://lists.apache.org/list?dev@flume.apache.org>
Additionally, the project adopted log4j 2 in FLUME-2050. Duplicate JIRAs that come in asking about it generally get linked to that issue. > On May 17, 2022, at 12:15 PM, Mysore, Raghunath <rmys...@visa.com.INVALID> > wrote: > > Greetings, Folks > I am looking for discussions about log4j vulnerability for Apache Flume > product. > Any pointers ? > > Thanks, > -Raghu