Skip to content

Security: jfrog/log-analytics-splunk

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.0.x
<= 1.0.x

Reporting a Vulnerability

Please post your vulnerability report from the following page: https://github.com/jfrog/log-analytics-splunk/security/advisories

Fixed issues

March 22, 2024

Upgraded docker images to use fluentd:1.16.3 This resolves the following CVEs

Note: When scanning our fluentd docker image releases-pts-observability-fluentd.jfrog.io/fluentd:4.1 for volunerabilities, CVE-2023-45853 still comes up (from fluentd:1.16.3). However, fluentd claims it's a non-issue since affected code (MiniZip) is not built-in

There aren’t any published security advisories