logpresso / CVE-2021-44228-Scanner

Vulnerability scanner and mitigation patch for Log4j2 CVE-2021-44228
Apache License 2.0
852 stars 173 forks source link

Cannot fix CVE-2021-44832 upgrade it #289

Open bcraigie opened 2 years ago

bcraigie commented 2 years ago

On some jar files, I get this error: Cannot fix CVE-2021-44832, upgrade it

Such as on file log4j-2.11.1.jar

Does this mean I should upgrade the tool, or upgrade the Jar file? Any suggestions would be welcome.

Many thanks Brian

pinacoelho commented 2 years ago

It means you have to upgrade the log4j jar.