You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
All components of Registry are using slf4j and jboss-logging, not log4j. Quarkus (which we run on top of) is not vulnerable - you can read more about that here:
Is the version of
log4j
being used byslf4j
in the apicurio-registry vulnerable to CVE 2021-44228/Log4Shell??If so are there plans to address this and update? I am running apicurio-registry in production and am concerned.
I've tried my hand at finding if the version is vulnerable but I must admit my java package management skills are lacking.
The text was updated successfully, but these errors were encountered: