Log4j Security Vulnerabilities

SOLVED

Hi,

Accorrding to the CVE-2021-44228 Vulnerability and Sage x3.

Elastic search uses log4j any suggestion or recomendations about this?

Parents Reply
  • 0 in reply to fperez

    Yes, i have added -Dlog4j2.formatMsgNoLookups=true in the  JVM_OPTIONS file for Elastic Search and restart the services. But we have alot of different version of X3 and elastic search out there, For the old bundled elastic search i have used the managermode of the service and added the parameters.

Children