ossf / oss-compromises

Archive of various open source security compromises
5 stars 1 forks source link

Log4J Exploit of US Federal System #8

Open jspeed-meyers opened 2 years ago

jspeed-meyers commented 2 years ago

https://www.cisa.gov/uscert/ncas/alerts/aa22-320a

This also appears to fall within the definition.

david-a-wheeler commented 2 years ago

+1. I think people would be surprised if we didn't list log4j :-).