Log4j vulnerability and Wix server

Hello
A few client ask me about the log4j vulnerability and the Wix technologies server.
Can u tell me if actyally you have patch the vulnerability or how the situation are going ?
Thx
Denis

1 Like

@brett
Hello Bret
I know you are the best for ask the Wix team about this vulnerability :wink:

Do you have some (intern) news ?
All the média are affraid about that and Wix dont communicate. I don’t understand this position…
Can we have a point situation ?
Thx

Hey Denis,

Sad to say, but Brett is no longer with us, however I have reached out about this issue.

Wix.com is actively responding to the reported remote code execution vulnerability in the Apache Log4j 2 Java library dubbed Log4Shell (orLogJam).

Since December 10, 2021, Wix has implemented controls and filtering to monitor our platform. After comprehensive research, Wix didn’t find evidence of any exploitation of the vulnerabilities in any of our environments.

We will continue monitoring further developments and applying the relevant controls to mitigate any potential vulnerability.

@randya Thx! :slight_smile: