Just a simple question here -- does the Prometheus Exporter present a risk
for the Log4j 2 vulnerability?  It was added to the news page but
instinctively I don't see how an attacker might exploit it.  If it's not
expected to be a concern, I think we should state so in the news; no reason
to raise undue alarm bells.  Maybe we should remove it.

~ David Smiley
Apache Lucene/Solr Search Developer
http://www.linkedin.com/in/davidwsmiley

Reply via email to