Replace Log4j from 2.x to 2.17.0 or later

No, you can't just replace de library for a newer version.

All the recommendations regarding the Log4shell exploit are in the pinned security announcement, there you will find instructions to mitigate this in different versions.

2 Likes