juicer icon indicating copy to clipboard operation
juicer copied to clipboard

log4j vulnerability in jar files

Open annashcherbina opened this issue 2 years ago • 0 comments

Dear authors,

Thank you for this great tool. I am seeing log4j vulnerabilities in the following jar files:

  • juicer_tools.1.8.9/3d-dna/visualize/juicebox_tools.jar
  • juicer_tools.1.8.9/CPU/common/juicer_tools.jar
  • juicer_tools.1.8.9/juicer_tools.1.8.9_jcuda.0.8.jar
  • juicer_tools.1.8.9_jcuda.0.8.jar

Is there an updated jar file release with the log4j (and log4j2) vulnerabilities remediated, or one pending in the future? Our IT department gets unhappy when they find jar files with the log4j vulnerability in them, and these were flagged for removal :(

Many thanks!

annashcherbina avatar Sep 28 '22 11:09 annashcherbina