8.2.1
SonarQube 8.2 Community Edition
sonar-zap-plugin 1.2.0
- Applied mitigation for CVE-2021-44228
- bcgovimages/sonarqube tagged 8.2 and 8.2.1 have been updated to include the
LOG4J_FORMAT_MSG_NO_LOOKUPS=true
mitigation from here; https://logging.apache.org/log4j/2.x/security.html