[
https://issues.apache.org/jira/browse/KAFKA-13616?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Dongjin Lee resolved KAFKA-13616.
---------------------------------
Resolution: Duplicate
> Log4j 1.X CVE-2022-23302/5/7 vulnerabilities
> --------------------------------------------
>
> Key: KAFKA-13616
> URL: https://issues.apache.org/jira/browse/KAFKA-13616
> Project: Kafka
> Issue Type: Bug
> Reporter: Dominique Mongelli
> Priority: Major
>
> Some log4j 1.x vulnerabilities have been disclosed recently:
> * CVE-2022-23302: https://nvd.nist.gov/vuln/detail/CVE-2022-23302
> * CVE-2022-23305 : https://nvd.nist.gov/vuln/detail/CVE-2022-23305
> * CVE-2022-23307 : [https://nvd.nist.gov/vuln/detail/CVE-2022-23307]
> We would like to know if kafka is affected by these vulnerabilities ?
>
--
This message was sent by Atlassian Jira
(v8.20.1#820001)