Some Eclipse Foundation services are deprecated, or will be soon. Please ensure you've read this important communication.

Bug 577763

Summary: CVE-2021-44228
Product: [Eclipse Project] JDT Reporter: Helmut Hauser <Helmut_hauser>
Component: APTAssignee: Generic inbox for the JDT-APT component <jdt-apt-inbox>
Status: CLOSED INVALID QA Contact:
Severity: critical    
Priority: P3 CC: loskutov
Version: 4.22   
Target Milestone: ---   
Hardware: All   
OS: All   
Whiteboard:

Description Helmut Hauser CLA 2021-12-12 03:59:21 EST
Please do avoid to include old and vulnerable items like this. CVE-2021-44228
A pre-check is required.
If anyone dare to include this (the vulnerability version) the IDA might react and just display „NO“
Comment 1 Andrey Loskutov CLA 2021-12-12 07:06:01 EST
Log4j is neither shipped nor used by Eclipse platform.