Skip to content

Update Apache Fuseki server dependency to permanently remove log4j security vulnerability #12

@mpsonntag

Description

@mpsonntag

The log4j version (2.14.1) used in the current build of the Apache Fuseki server contains a severe security vulnerability, see logging.apache.org for details.

Upgrade the Apache Fuseki server as soon as a fixed version (dependency Log4j >= 2.15.0) is released (4.3.0 still contains the vulnerable library). The used version can be checked in fuseki-server.jar:METAINF/DEPENDENCIES.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions