Find Log4Shell vulnerabilities in your unmanaged and shaded jars with the Snyk CLI
Announcing a new Snyk CLI command (snyk log4shell) to find affected Log4j libraries that were not disclosed in the manifest file, forked, or repackaged.

4276 articles
4276 ARTICLES
Announcing a new Snyk CLI command (snyk log4shell) to find affected Log4j libraries that were not disclosed in the manifest file, forked, or repackaged.


It has been discovered that Log4j version 2.15.0 is still susceptible to arbitrary code execution (CVE-2021-45046) in certain circumstances. Upgrade to 2.16.0.

Learn about the general points of principle that we use to help guide our security thinking and decision making here at Snyk.

Prisma was a critical technology that enabled Tryg to democratize billions of records from different data sources, through the Tryg 360 platform.

Kubernetes achieves SLSA security framework compliance! Learn how this enhances software supply chain security for cloud-native applications.

In this post, we’ll give an explanation of Log4Shell for non-developers and an overview of the Log4Shell vulnerability for non-Java developers.

JsDoc is a great tool for documenting code and providing type-safety in your JavaScript project without any additional configuration. Learn what JsDoc is, how it works, the benefits it provides, and how to use it in your project.

This Log4Shell remediation cheat sheet summarizes the main fixes and recommendations being used to limit exposure to the vulnerability and to reduce the risk of this vulnerability being exploited in production systems.

The Snyk platform works seamlessly with GKE Autopilot: a revolution in managed Kubernetes. Customers can quickly get started securing workloads on GKE Autopilot with Snyk Container’s Kubernetes integration and can leverage Snyk CLI with Google Cloud Build as well as integrations with Google Container Registry, Google Artifact Registry, and one of the several Snyk Git repository SCM integrations.

Learn more about the massive impact of Log4Shell, the recently disclosed Log4j vulnerability. Learn how far spread it is, how it affects supply chain security, how to prioritize your response, and how to fix it quickly.

See how easy (and fast) it is to find and automatically fix Log4Shell with Snyk.

Prisma plays a key role in the Panther’s tech stack, allowing individual teams to have the freedom they need while also maintaining data consistency
Cookies
We use analytics cookies (Google Analytics) to improve this site. Accept to allow them. Privacy Policy