Do we need to be worried about log4j 1.x vulnerabilities in JBoss EAP 7?
Issue
Log4j 1.x shows multiple vulnerabilities including CVE-2021-4104, CVE-2022-23302, CVE-2022-23305, CVE-2022-23307, CVE-2019-17571. Are these going to be fixed?
Environment
- Red Hat JBoss Enterprise Application Platform (EAP) 7.x
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.