Spring Boot


Vendor Data
Community Data

Vendor Resources

Resource Link
https://spring.io/blog/2021/12/10/log4j2-vulnerability-and-spring-boot https://spring.io/blog/2021/12/10/log4j2-vulnerability-and-spring-boot

Community Resources

Resource Link
source https://spring.io/blog/2021/12/10/log4j2-vulnerability-and-spring-boot

Community Notes

Source Note
NCSC-NL Spring Boot users are only affected by this vulnerability if they have switched the default logging system to Log4J2
CISAGov Spring Boot users are only affected by this vulnerability if they have switched the default logging system to Log4J2

Sources

Date Attribution Description
2021-12-31 9:06:53 NCSC-NL Updated community link source. Updated community note.
2021-12-30 21:31:50 CISAGov Updated vendor link https://spring.io/blog/2021/12/10/log4j2-vulnerability-and-spring-boot. Updated community note.