Upgrade the log4j2.version
property to 2.15.0
or higher, ASAP, to address this severe zero-day vulnerability:
https://nvd.nist.gov/vuln/detail/CVE-2021-44228
I am posting this here because the normal channels for reporting this vulnerability are "too slow" to address this zero-day vulnerability.
Comment From: alan-czajkowski
addressed here: #28983