NOTIFICATION

Upstream Works Not Affected by Apache Log4j Library Vulnerabilities

Notification: Upstream Works Not Affected by Apache Log4j Library Vulnerabilities

Date: December 2021

This notification is in reference to the recent report about potential vulnerabilities in the Apache Log4j Logging library affecting all Log4j2 versions prior to 2.15.0. Upstream Works Software would like to assure our partners and customers that we have verified that our systems – Upstream Works for Finesse, Upstream Works for Amazon, Upstream Works Desktop and Upstream Works Assist – do not use the Apache Log4j Java Logging library. They are therefore not affected by this vulnerability.

If you have any questions or concerns about this issue, please contact your Upstream Works Sales or Support Representative.