{"id":7487,"date":"2021-12-12T11:55:39","date_gmt":"2021-12-12T09:55:39","guid":{"rendered":"https:\/\/www.almtoolbox.com\/blog_he\/?p=7487"},"modified":"2021-12-12T13:59:45","modified_gmt":"2021-12-12T11:59:45","slug":"sonarqube-log4j-vulnerability","status":"publish","type":"post","link":"https:\/\/www.almtoolbox.com\/blog_he\/sonarqube-log4j-vulnerability\/","title":{"rendered":"SonarQube \u05d5\u05d7\u05d5\u05dc\u05e9\u05ea Log4J"},"content":{"rendered":"<h3>\u05e2\u05d3\u05db\u05d5\u05df \u05d1\u05e0\u05d5\u05d2\u05e2 \u05dc\u05d7\u05d5\u05dc\u05e9\u05ea Log4J \u05e9\u05d4\u05ea\u05d2\u05dc\u05ea\u05d4 \u05d1\u05e1\u05d5\u05e3 \u05d4\u05e9\u05d1\u05d5\u05e2 \u05d4\u05d0\u05d7\u05e8\u05d5\u05df \u05d5\u05d1\u05d4\u05e7\u05e9\u05e8 \u05dc- SonarQube:<\/h3>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-7488\" src=\"https:\/\/www.almtoolbox.com\/blog_he\/wp-content\/uploads\/2021\/12\/sonarqube-red-logo.png\" alt=\"sonarqube alert\" width=\"661\" height=\"368\" srcset=\"https:\/\/www.almtoolbox.com\/blog_he\/wp-content\/uploads\/2021\/12\/sonarqube-red-logo.png 1183w, https:\/\/www.almtoolbox.com\/blog_he\/wp-content\/uploads\/2021\/12\/sonarqube-red-logo-300x167.png 300w, https:\/\/www.almtoolbox.com\/blog_he\/wp-content\/uploads\/2021\/12\/sonarqube-red-logo-1024x570.png 1024w, https:\/\/www.almtoolbox.com\/blog_he\/wp-content\/uploads\/2021\/12\/sonarqube-red-logo-768x427.png 768w\" sizes=\"auto, (max-width: 661px) 100vw, 661px\" \/><\/p>\n<p>\u05d9\u05e6\u05e8\u05df SonarQube \u05db\u05d5\u05ea\u05d1 <a href=\"https:\/\/community.sonarsource.com\/t\/sonarqube-and-the-log4j-vulnerability\/54721\/3\" target=\"_blank\" rel=\"noopener\">\u05db\u05d0\u05df<\/a> \u05e9\u05d4\u05de\u05d5\u05e6\u05e8 \u05e2\u05e6\u05de\u05d5 \u05dc\u05d0 \u05e2\u05d5\u05e9\u05d4 \u05e9\u05d9\u05de\u05d5\u05e9 \u05d9\u05e9\u05d9\u05e8 \u05d1\u05e1\u05e4\u05e8\u05d9\u05d4 \u05d4\u05e0&quot;\u05dc,<br \/>\n\u05db\u05da \u05e9\u05d0\u05d9\u05df \u05d7\u05e9\u05e9 \u05dc\u05e4\u05d2\u05d9\u05e2\u05d4 \u05d1- SonarQube \u05d1\u05d2\u05d9\u05e8\u05e1\u05d0\u05d5\u05ea \u05d4\u05d0\u05d7\u05e8\u05d5\u05e0\u05d5\u05ea (9.2.1 \u05d5- 8.9 ).<\/p>\n<p>\u05d9\u05d7\u05d3 \u05e2\u05dd \u05d6\u05d0\u05ea, \u05d1- SonarQube \u05d9\u05e9 \u05e7\u05e8\u05d9\u05d0\u05d4 \u05dc\u05e8\u05db\u05d9\u05d1 \u05e9\u05dc Elastic (ElasticSearch) \u05e9\u05d1\u05e2\u05e6\u05de\u05d5 \u05e7\u05d5\u05e8\u05d0 \u05dc- log4j , \u05db\u05da \u05e9\u05d9\u05ea\u05db\u05df \u05d5\u05db\u05d0\u05df \u05d9\u05e9 \u05e1\u05d9\u05db\u05d5\u05df.<br \/>\n\u05de\u05d9\u05d3\u05e2 \u05e0\u05d5\u05e1\u05e3 \u05d5\u05d3\u05e8\u05db\u05d9 \u05e4\u05ea\u05e8\u05d5\u05df <a href=\"https:\/\/community.sonarsource.com\/t\/sonarqube-and-the-log4j-vulnerability\/54721\" target=\"_blank\" rel=\"noopener\">\u05db\u05d0\u05df<\/a>.<\/p>\n<p>\u05de\u05e1' \u05d4\u05d7\u05d5\u05dc\u05e9\u05d4 \u05d4\u05d5\u05d0 CVE-2021-44228.<\/p>\n<p>&nbsp;<\/p>\n<h3>\u05e7\u05d9\u05e9\u05d5\u05e8\u05d9\u05dd \u05e8\u05dc\u05d1\u05e0\u05d8\u05d9\u05dd:<\/h3>\n<ul>\n<li><a href=\"https:\/\/www.almtoolbox.com\/il\/sonarqube\" target=\"_blank\" rel=\"noopener\">\u05d0\u05ea\u05e8 SonarQube \u05d9\u05e9\u05e8\u05d0\u05dc<\/a> (\u05e2\u05d1\u05e8\u05d9\u05ea)<\/li>\n<li><a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2021-44228\" target=\"_blank\" rel=\"noopener\">\u05de\u05d9\u05d3\u05e2 \u05e0\u05d5\u05e1\u05e3 \u05e2\u05dc \u05d4\u05d7\u05d5\u05dc\u05e9\u05d4<\/a> (\u05d0\u05ea\u05e8 NIST &#8211; \u05d0\u05e0\u05d2\u05dc\u05d9\u05ea)<\/li>\n<li><a href=\"https:\/\/internet-israel.com\/%d7%a8%d7%a9%d7%aa-%d7%94%d7%90%d7%99%d7%a0%d7%98%d7%a8%d7%a0%d7%98\/%d7%94%d7%9e%d7%a7%d7%a8%d7%94-%d7%a9%d7%9c-log4j2-%d7%95%d7%9e%d7%94-%d7%a9%d7%94%d7%95%d7%90-%d7%99%d7%9b%d7%95%d7%9c-%d7%9c%d7%9c%d7%9e%d7%93-%d7%90%d7%95%d7%aa%d7%a0%d7%95\/\" target=\"_blank\" rel=\"noopener\">\u05d4\u05e1\u05d1\u05e8 \u05e2\u05dc \u05d7\u05d5\u05dc\u05e9\u05ea Log4J<\/a> (\u05e2\u05d1\u05e8\u05d9\u05ea)<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u05e2\u05d3\u05db\u05d5\u05df \u05d1\u05e0\u05d5\u05d2\u05e2 \u05dc\u05d7\u05d5\u05dc\u05e9\u05ea Log4J \u05e9\u05d4\u05ea\u05d2\u05dc\u05ea\u05d4 \u05d1\u05e1\u05d5\u05e3 \u05d4\u05e9\u05d1\u05d5\u05e2 \u05d4\u05d0\u05d7\u05e8\u05d5\u05df \u05d5\u05d1\u05d4\u05e7\u05e9\u05e8 \u05dc- SonarQube: \u05d9\u05e6\u05e8\u05df SonarQube \u05db\u05d5\u05ea\u05d1 \u05db\u05d0\u05df \u05e9\u05d4\u05de\u05d5\u05e6\u05e8 \u05e2\u05e6\u05de\u05d5 \u05dc\u05d0 \u05e2\u05d5\u05e9\u05d4 \u05e9\u05d9\u05de\u05d5\u05e9 \u05d9\u05e9\u05d9\u05e8 \u05d1\u05e1\u05e4\u05e8\u05d9\u05d4 \u05d4\u05e0&quot;\u05dc, \u05db\u05da \u05e9\u05d0\u05d9\u05df \u05d7\u05e9\u05e9 \u05dc\u05e4\u05d2\u05d9\u05e2\u05d4 \u05d1- SonarQube \u05d1\u05d2\u05d9\u05e8\u05e1\u05d0\u05d5\u05ea \u05d4\u05d0\u05d7\u05e8\u05d5\u05e0\u05d5\u05ea (9.2.1 \u05d5- 8.9 ). \u05d9\u05d7\u05d3 \u05e2\u05dd \u05d6\u05d0\u05ea, \u05d1- SonarQube \u05d9\u05e9 \u05e7\u05e8\u05d9\u05d0\u05d4 \u05dc\u05e8\u05db\u05d9\u05d1 \u05e9\u05dc Elastic (ElasticSearch) \u05e9\u05d1\u05e2\u05e6\u05de\u05d5 \u05e7\u05d5\u05e8\u05d0 \u05dc- log4j , \u05db\u05da \u05e9\u05d9\u05ea\u05db\u05df \u05d5\u05db\u05d0\u05df \u05d9\u05e9 [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[189,367],"tags":[649,650],"class_list":["post-7487","post","type-post","status-publish","format-standard","hentry","category-devsecops","category-sonarqube","tag-log4j","tag-vulnerability"],"_links":{"self":[{"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/posts\/7487","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/comments?post=7487"}],"version-history":[{"count":0,"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/posts\/7487\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/media?parent=7487"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/categories?post=7487"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.almtoolbox.com\/blog_he\/wp-json\/wp\/v2\/tags?post=7487"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}