Skip to content

Vulnerabilities in Airbyte | Apache Log4j #40258

Closed Answered by wennergr
Nasser506 asked this question in Connector Questions
Discussion options

You must be logged in to vote

Hey @Nasser506,

The log4j vulnerability you reference was in the destination-s3 connector, which has since been patched (version 0.6.4 in dockerhub).

Log4j was imported as a transitive dependency from a library that was not in use, so the vulnerability did not affect us.

Replies: 4 comments 2 replies

Comment options

You must be logged in to vote
1 reply
@Nasser506
Comment options

Comment options

You must be logged in to vote
1 reply
@Nasser506
Comment options

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Answer selected by wennergr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
3 participants