Unlock a world of possibilities! Login now and discover the exclusive benefits awaiting you.
Hi,
Currently talend uses log4j 2.12 version which has the latest vulnerability discovered. As I can see for each job there is a separate POM file and all those files are using that log4j version. Do I need to manually go to each and every POM file and change it or is there a easy way to change this version to new log4j 2.17.1 version.
https://www.secureworks.com/blog/log4j-vulnerability-faqs# :~:text=rated%20moderate%20severity.-,Version%202.17.,was%20disclosed%20on%20December%2016.
Thank you
Hello, -> all is fixed
1st, Thanks for the nice and quick reply from @Heshan Karunaratne - It saved me, and helped a lot.
2nd. For those out there who also struggle with the security themes of log4j 1.x and 2.x hereafter my crucial points that have brought success.
1) I'd to understand the substitution from - to with the bridging libs
2) I'd to learn, that with my old TOS BD 7.2.1 success is to difficult to achieve
I'm exported the TOS BD 7.2.1 items and import them to TOS DI 8.0.1, that helped me a lot.
I wish to Thanks all of you, you're a great community
Torsten
My pleasure