Log4j Update
envgap__iterate-ch__cyberduck-18047
01 / FAILURE SIGNATURE
As reported upstream
No identifying execution failure has been captured.
Not a benchmark task.
- In a clean container the reported failure did not reproduce, or the known fix did not make the project run.
02 / ENVIRONMENT RECIPE
- Base commit
23ec8a1a41627387ba8a730d912365e7c098e5cf- Manifest
pom.xml- Reproduce
Awaiting issue-specific recipe- Run under trace
Awaiting a meaningful runtime command
03 / ORIGINAL ISSUE TEXT
iterate-ch/cyberduck #18047 · read the original issue
Is it possible to update the log4j component in near future as our security monitoring system claims all machines that have cyberduck installed as potential risk. The version used in Cyberduck 2.25.3 is affected by some Security issues like: - CVE-2026-34477 - CVE-2026-34478 - CVE-2026-34480
04 / LABELS
Labels from the report text only; not yet run
No supported category has been assigned.
Label rules and the text that matched
[]