DEV Community

dzikoysk ✨
dzikoysk ✨

Posted on

2 1

Huge RCE in log4j logging library in JVM ecosystem

5 days ago log4j received hot-fix for huge RCE. It's not quite known topic and today it has been expolited in multiple projects.

It's really easy to reproduce, you should take a look at dependencies in your projects to address this issue. At least bump it to 2.15, the best choice is to move to e.g. logback, at least for a while.

Top comments (0)

Billboard image

The Next Generation Developer Platform

Coherence is the first Platform-as-a-Service you can control. Unlike "black-box" platforms that are opinionated about the infra you can deploy, Coherence is powered by CNC, the open-source IaC framework, which offers limitless customization.

Learn more

👋 Kindness is contagious

Please leave a ❤️ or a friendly comment on this post if you found it helpful!

Okay