Impacted jars by Apache Log4j Tool : Zero Day in Ubiquitous Under Active Attack (CVE-2021-44228) ?? #46
-
Hi Team, We are using following jar provided by you. We want to ensure and know if it is impacted by “Apache Log4j Tool : Zero Day in Ubiquitous Under Active Attack (CVE-2021-44228)”. If it’s impacted please let us know about the security recommendation. To know we are looking for following answer Are you using log4J? |
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
Hello @Sanjay122021,
Could you please elaborate on this? We don't provide such JARs. You can check the dependencies of the project using org.owasp:csrfguard🫙4.1.2-SNAPSHOT
org.owasp:csrfguard-extension-session🫙4.1.2-SNAPSHOT
org.owasp:csrfguard-jsp-tags🫙4.1.2-SNAPSHOT
For logging we use the |
Beta Was this translation helpful? Give feedback.
Hello @Sanjay122021,
Could you please elaborate on this? We don't provide such JARs.
You can check the dependencies of the project using
mvn dependency:tree -Dscope=compile
.org.owasp:csrfguard🫙4.1.2-SNAPSHOT
org.owasp:csrfguard-extension-session🫙4.1.2-SNAPSHOT