Graylog2 / collector-sidecar

Manage log collectors through Graylog
https://www.graylog.org/
Other
268 stars 56 forks source link

sidecar log4j cve #419

Closed dio99 closed 2 years ago

dio99 commented 2 years ago

Hi is the sidecar vuln for the log4j cve ? our interal scan tool indicates it this was sidecar version 1.0.2 wounder if it will show same on 1.1

Problem description

Steps to reproduce the problem

  1. ...

Environment

mpfz0r commented 2 years ago

@dio99 the sidecar is written in Go and does not include a log4j library. So, no. Not vulnerable.