[
https://issues.apache.org/jira/browse/KNOX-2702?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17475614#comment-17475614
]
ASF subversion and git services commented on KNOX-2702:
-------------------------------------------------------
Commit 87502b3adca5d162b77e4aa057ad36777a82151b in knox's branch
refs/heads/master from Sandor Molnar
[ https://gitbox.apache.org/repos/asf?p=knox.git;h=87502b3 ]
KNOX-2702 - Upgraded Log4J to 2.17.1 (#530)
> Upgrade Log4j to 2.17.1
> -----------------------
>
> Key: KNOX-2702
> URL: https://issues.apache.org/jira/browse/KNOX-2702
> Project: Apache Knox
> Issue Type: Task
> Affects Versions: 2.0.0, 1.6.0, 1.6.1
> Reporter: Sandor Molnar
> Assignee: Sandor Molnar
> Priority: Critical
> Time Spent: 10m
> Remaining Estimate: 0h
>
> Even in 2.16.0, there are plenty of security vulnerabilities that are fixed
> in 2.17.1. See Log4J's own security page:
> [https://logging.apache.org/log4j/2.x/security.html]
> It's strongly recommended to upgrade to 2.17.1.
--
This message was sent by Atlassian Jira
(v8.20.1#820001)