Home / Companies / Sentry / Blog / Post Details
Content Deep Dive

Sentry's response to Log4j vulnerability CVE-2021-44228Removed

Blog post from Sentry

Post Details
Company
Date Published
Author
Alek Amrani
Word Count
324
Language
English
Hacker News Points
-
Summary

Sentry has confirmed it is not impacted by the log4j vulnerabilities CVE-2021-44228 and CVE-2021-45046, which primarily affect versions 2.x of log4j. Sentry's SaaS platform and self-hosted version in its default configuration are also unaffected. However, users may need to evaluate their specific environment if they are using a non-default setup or integrating with log4j2 through Sentry's integration. To mitigate the risk, it is recommended to use version 2.16.0 of log4j2 as part of Sentry's integration.