Log4Shell-like security hole found in popular Java SQL database engine H2 – Naked Security

siteadmin January 8, 2022

“It’s Log4Shell, Jim,” as Commander Spock never actually said, “But not as we know it.”

That’s the briefest summary we can come up with of the bug CVE-2021-42392, a security hole recently reported by researchers at software supply chain management company Jfrog.

This time, the…

Source: nakedsecurity.sophos.com and Read More