Do not input private or sensitive data. View Qlik Privacy & Cookie Policy.
Skip to main content

Announcements
Join us at Qlik Connect 2026 in Orlando, April 13–15: Register Here!
cancel
Showing results for 
Search instead for 
Did you mean: 
Romain_D
Contributor
Contributor

Vulnerabilité log4j-core-2.17.1 et Talend Studio 8.0.1 R2025-01

Bonjour,

je souhaite faire un update de log4j-core-2.17.1 suite à la vulnérabilité CVE-2025-68161 et passer à la version 2.25.3. J'utilise la version Talend Studio 8.0.1 R2025-01 à cause de contraintes de déploiement.

Est ce que cette vulnérabilité est potentiellement exploitable à partir des job Talend qui utilisent ce module

Est ce que je peux faire cette mise à jour en utilisant la vue Modules?

Merci

Labels (2)
1 Reply
gouravdubey5
Partner - Creator
Partner - Creator

Hello,

Talend has addressed the Log4j vulnerabilities by upgrading to Log4j 2.17.1 in Talend Studio 8.0.1 via cumulative monthly patches (including R2025-01 and later).
If your Studio is updated to R2025-01 or newer, the known Log4j security issues are mitigated as per Talend’s security guidance.

Ensure Talend Studio is updated to R2025-01 or later.

Verify that log4j-core version is 2.17.1 or newer in the Studio installation.

Apply the latest available patch to stay fully compliant.

Links:https://help.qlik.com/talend/en-US/patch-notes/8.0/Content/qtac-1884.htm

Thanks,

Gourav

Talend Solution Architect | Data Integration