There is a known remote code execution vulnerability (CVE-2021-44228) in Apache Log4j which is an open-source logging utility which causes major security threat.
Does Cloudbees DevOptics plugin uses Log4j? If yes, then what version and if it is vulnerable?
The CloudBees folks are the best ones to answer this, though this is an unsupported app. Try contacting their Support at https://support.cloudbees.com/hc/en-us and see what they have to say.
Good Luck!
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.