[ https://issues.apache.org/jira/browse/KNOX-2702?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Sandor Molnar resolved KNOX-2702. --------------------------------- Fix Version/s: 2.0.0 Resolution: Fixed > Upgrade Log4j to 2.17.1 > ----------------------- > > Key: KNOX-2702 > URL: https://issues.apache.org/jira/browse/KNOX-2702 > Project: Apache Knox > Issue Type: Task > Affects Versions: 2.0.0, 1.6.0, 1.6.1 > Reporter: Sandor Molnar > Assignee: Sandor Molnar > Priority: Critical > Fix For: 2.0.0 > > Time Spent: 20m > Remaining Estimate: 0h > > Even in 2.16.0, there are plenty of security vulnerabilities that are fixed > in 2.17.1. See Log4J's own security page: > [https://logging.apache.org/log4j/2.x/security.html] > It's strongly recommended to upgrade to 2.17.1. -- This message was sent by Atlassian Jira (v8.20.10#820010)