Apache log4j 1.x vulnerability mitigations on Kafka

2022-01-27 Thread Karupasamy S
Hi Team, We are using Apache Kafka as part of the ELK stack and we have an internal tool to find the vulnerabilities present on all the products/3pp which we use in our product. So we received the below vulnerabilities on log4j: CVE-2022-23302,

RE: Apache log4j 1.x vulnerability mitigations on Kafka

2022-01-28 Thread Karupasamy S
Hi Team, Kindly awaiting your response, as this issue needs to be mitigated before our product release to the market in the coming days. Thanks & Regards Karupasamy From: Karupasamy S Sent: Thursday, January 27, 2022 4:12 PM To: users@kafka.apache.org Cc: Mariappan Thang