[
https://issues.apache.org/jira/browse/KNOX-2702?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Work on KNOX-2702 started by Sandor Molnar.
-------------------------------------------
> Upgrade Log4j to 2.17.1
> -----------------------
>
> Key: KNOX-2702
> URL: https://issues.apache.org/jira/browse/KNOX-2702
> Project: Apache Knox
> Issue Type: Task
> Affects Versions: 2.0.0, 1.6.0, 1.6.1
> Reporter: Sandor Molnar
> Assignee: Sandor Molnar
> Priority: Critical
>
> Even in 2.16.0, there are plenty of security vulnerabilities that are fixed
> in 2.17.1. See Log4J's own security page:
> [https://logging.apache.org/log4j/2.x/security.html]
> It's strongly recommended to upgrade to 2.17.1.
--
This message was sent by Atlassian Jira
(v8.20.1#820001)