简体   繁体   中英

Effect of log4j vulnerability on wildfly-11.0.0-final

I am using wildfly-11.0.0-final. I can see the log4j-jboss-logmanager jar has a log4j 1.2.16 dependency. Will it be affected? How to mitigate this?

If you are not using the JMSAppender you shouldn't be exposed if I understand https://www.wildfly.org/news/2021/12/13/Log4j-CVEs/ correctly.

The technical post webpages of this site follow the CC BY-SA 4.0 protocol. If you need to reprint, please indicate the site URL or the original address.Any question please contact:yoyou2525@163.com.

 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM