Dozuki Not Affected by Log4j Vulnerability
Background
Recently, a new zero day vulnerability (Log4j) was uncovered in the wild. This vulnerability allows attackers to inject arbitrary code in the Java library Apache Log4j for versions 2.0-2.14.1.
Due to the ability for Remote Code Execution to be exploited, this vulnerability is considered critical. Immediate patching or mitigation is recommended.
Dozuki Not Affected by Log4j
After comprehensive review, Dozuki can confirm that our application is not impacted by the Log4j vulnerability. No Dozuki instance, including OnPrem or Private Cloud is affected.
For additional details on our infrastructure, please reference our security overview.
Written by Lucas Bishop
Related Posts
View All PostsMobile App Update: More Login Options
With our latest Mobile App release (v 4.1), we're supporting more login options for your Dozuki site. Whether you are using Dozuki with an in-house user authentication system...
Continue ReadingOnPrem: May 2020 Release Roll-up
Version 1.10.4 Released on May 11, 2020
Continue ReadingGuide Lists: Now Supporting Private Guides
We have recently implemented the ability to include Private Guides inside of Guide Lists. This provides administrators a flexible way to create lists of Guides that show/hide...
Continue Reading