Vulnerability CVE-2021-44228
Is CruzOC vulnerable with CVE-2021-44228?
While CruzOC does use log4j, the default configuration in CruzOC does not expose the vulnerability described in CVE-2021-44228. No additional mitigation or patching is required in CruzOC.
Log4j we are using, would expose this vulnerability if using JMSAppender.
CruzOC does not enable or use JMSAppender.
CruzOC does not enable or use JMSAppender.