docker-splunk icon indicating copy to clipboard operation
docker-splunk copied to clipboard

Scan indicates java version used is vulnerable to log4j (Trivy)

Open munntjlx opened this issue 3 years ago • 0 comments
trafficstars

| com.splunk.logging:splunk-library-javalogging | GHSA-94g7-hpv8-h9qm | CRITICAL | 1.6.2             | 1.11.1                         | Remote code injection in Log4j               |
|                                               |                     |          |                   |                                | -->github.com/advisories/GHSA-94g7-hpv8-h9qm |
+                                               +---------------------+----------+                   +                                +----------------------------------------------+
|                                               | GMS-2021-61         | UNKNOWN  |                   |                                | Improper Neutralization of                   |
|                                               |                     |          |                   |                                | Special Elements used in an OS               |
|                                               |                     |          |                   |                                | Command ('OS Command...

munntjlx avatar Mar 25 '22 15:03 munntjlx