www.lunasec.io

-werners-
Esteemed Contributor III

Log4J: part 2

Apparently log4j 2.15 is still vulnerable:

https://www.lunasec.io/docs/blog/log4j-zero-day-update-on-cve-2021-45046/

So beter use version 2.16.

But as mentioned in several topics: Databricks does not use an impacted version.