From version 3.6
edited by awa
on 01.04.2022, 17:13
Change comment: There is no comment for this version
To version 3.7
edited by gru
on 01.04.2022, 19:36
Change comment: There is no comment for this version

Summary

Details

Page properties
Author
... ... @@ -1,1 +1,1 @@
1 -XWiki.awa
1 +XWiki.gru
Content
... ... @@ -6,7 +6,7 @@
6 6  The {{formcycle/}} versions 7.0.0 through 7.0.8 use a version of Log4j that contains the [[CVE-2021-45105>>https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-45105]] vulnerability disclosed on December 18th, 2021.
7 7  The {{formcycle/}} versions 7.0.0 through 7.0.9 use a version of Log4j that contains the [[CVE-2021-44832>>https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44832]] vulnerability disclosed on December 11th, 2021.
8 8  
9 -Currently, we are not aware of any scenario where these vulnerabilities in {{formcycle/}} can be exploited. **We still recommend to upgrade to {{formcycle/}} [[Version 7.0.12>>doc:Blog.WebHome]], which uses a new version of Log4j that no longer contains these vulnerabilities.**
9 +Currently, we are not aware of any scenario where these vulnerabilities in {{formcycle/}} can be exploited. **We still recommend to upgrade to {{formcycle/}} [[Version 7.0.12>>doc:Blog.WebHome]], which use a new version of Log4j and the Spring Framework that no longer contain these vulnerabilities.**
10 10  {{/info}}
11 11  
12 12  {{info}}