Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Apache Log4j 1.x Multiple Vulnerabilities

Luke Davis March 8, 2022

Hi All,

 

Back in December when log4j was reported an issue for java applications, Confluence forums reported it was not an issue for their product.

I am however still seeing alerts from our tenable scans that say it is vunerable

Please can you confirm if this is still an issue?

 

 

Path              : /opt/atlassian/confluence/confluence/WEB-INF/lib/log4j-1.2.17-atlassian-3.jar
  Installed version : 1.2.17



  Path              : /opt/backup/plugins-cache/1440495795000gliffy-confluence-plugin-6.7.0.jar
  Installed version : 1.2.17



  Path              : /opt/backup/plugins-osgi-cache/felix/felix-cache/bundle218/version0.0/1440495795000gliffy-confluence-plugin-6.7.0_1440495795000.jar-embedded/META-INF/lib/log4j-1.2.17.jar
  Installed version : 1.2.17



  Path              : /opt/backup/plugins-osgi-cache/transformed-plugins/1440495795000gliffy-confluence-plugin-6.7.0_1440495795000.jar
  Installed version : 1.2.17
SeverityStatePortAssets
 ActiveN/A

1 answer

1 accepted

0 votes
Answer accepted
Jack Brickey
Community Champion
March 8, 2022

Similar post....

I suggest reporting to Atlassian support also of interest reference Atlassian Trust

Luke Davis March 10, 2022

Ah! Apologies, I thought I raised this as an Atlassian support ticket.

I will close this off.

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events