Apache Log4j Critical Vulnerability

Is Weave Affected by Log4j Vunerability?

On 11 December 2021 a critical vulnerability was discovered in the Apache Log4j library version 2 and above. You can read more about it here https://thehackernews.com/2021/12/extremely-critical-log4j-vulnerability.html

Cohga has reviewed the issue and we have identified that there is no impact to Weave.

