<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.appian.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/discussions/f/general/22810/is-appian-affected-by-this-log4j-vulnerability-cve-2021-44228</link><description>https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-44228 
 Is Appian affected by the log4j vulnerability CVE-2021-44228?</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/90770?ContentTypeID=1</link><pubDate>Mon, 07 Feb 2022 16:17:00 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:e70387d0-33b4-46d4-bbb8-d55ea54a4528</guid><dc:creator>Peter Lewis</dc:creator><description>&lt;p&gt;Sorry, unfortunately I don&amp;#39;t know much about using log4j in plugins. Hopefully some other posters in the Community will have more context.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/90769?ContentTypeID=1</link><pubDate>Mon, 07 Feb 2022 16:04:50 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:57044e97-1194-4ad3-b48e-073c5550d767</guid><dc:creator>Satyam Singh</dc:creator><description>&lt;p&gt;Nope, actually i have added updated library of log4j 2.17 in my customer plugin package which has bit different implementation then log4j 1.17.&lt;/p&gt;
&lt;p&gt;example:&amp;nbsp;&lt;img src="/resized-image/__size/320x240/__key/communityserver-discussions-components-files/11/pastedimage1644249867916v1.png" alt=" " /&gt;&lt;/p&gt;
&lt;p&gt;it has LogManager while initializing class instead of Logger&amp;nbsp;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/90766?ContentTypeID=1</link><pubDate>Mon, 07 Feb 2022 15:37:01 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:6168e021-678b-46e0-a843-74943708e8ce</guid><dc:creator>Peter Lewis</dc:creator><description>&lt;p&gt;What do you mean when you say &amp;quot;changing my code as compatible to latest version&amp;quot; - did you install the hotfix or make the changes in a different way?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/90765?ContentTypeID=1</link><pubDate>Mon, 07 Feb 2022 15:31:38 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:31563615-9ab7-4ac3-9953-ec8d8ac77ce1</guid><dc:creator>Satyam Singh</dc:creator><description>&lt;p&gt;Hello &lt;a href="/members/peter.lewis"&gt;Peter Lewis&lt;/a&gt;,&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;after log4j upgrade,&amp;nbsp;I am not able to see my logging coming through tomcat.log file.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Even though after changing my code as compatible to latest version of log4j 2.17, not working. Any advice on that ?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/89036?ContentTypeID=1</link><pubDate>Tue, 14 Dec 2021 06:54:52 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:05a59b50-c228-433b-9ae8-587f0f215650</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;Peter, thanks a lot :-)&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/89031?ContentTypeID=1</link><pubDate>Mon, 13 Dec 2021 20:46:09 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:8bc84783-98f3-4c81-8ae1-ac538d8b59a1</guid><dc:creator>Peter Lewis</dc:creator><description>&lt;p&gt;Please find this knowledge base article with the latest information on this vulnerability:&amp;nbsp;&lt;a href="https://community.appian.com/support/w/kb/2511/kb-2204-information-about-the-log4j2-security-vulnerability-cve-2021-44228"&gt;community.appian.com/.../kb-2204-information-about-the-log4j2-security-vulnerability-cve-2021-44228&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Hotfixes are available for self-managed customers&amp;nbsp;with the latest updates to address this vulnerability.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/89022?ContentTypeID=1</link><pubDate>Mon, 13 Dec 2021 16:13:14 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:a7ec7db6-87c8-4831-83bc-e24b2cea9ada</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;I assume that the latest hotfixes include this patch. This is what they write in the email. In case you need details, contact Appian.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/89021?ContentTypeID=1</link><pubDate>Mon, 13 Dec 2021 16:09:06 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:97b01cd9-beb9-47a1-a40c-cffa7436c1b0</guid><dc:creator>keviny</dc:creator><description>&lt;p&gt;We have this same question&amp;nbsp;and did not receive communication on the fix. Is there documentation on how to fix this for an on-prem installation?&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/88992?ContentTypeID=1</link><pubDate>Mon, 13 Dec 2021 07:31:50 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:073baa1f-8e6a-4798-9baf-cdd7e6896aba</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;Just saw the mail sent on December 12th including the details about which parts of Appian may be affected, available updates and the procedure to update the Appian cloud environments.&lt;/p&gt;
&lt;p&gt;Well done :-)&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is Appian affected by this log4j vulnerability CVE-2021-44228?</title><link>https://community.appian.com/thread/88991?ContentTypeID=1</link><pubDate>Mon, 13 Dec 2021 07:25:10 GMT</pubDate><guid isPermaLink="false">d3a83456-d57b-489c-a84c-4e8267bb592a:137c4e2b-e0e7-457e-9b60-8c33c58a50b0</guid><dc:creator>Stefan Helzle</dc:creator><description>&lt;p&gt;&lt;a href="/members/peter.lewis"&gt;Peter Lewis&lt;/a&gt;: We need official communication about this topic!&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>