@@ -37,16 +37,16 @@ We currently maintain a collection of [log4j-samples](https://github.com/mergeba
37
37
38
38
# Example Usage: <a name =" itemexample " ></a >
39
39
40
- java -jar log4j-detector-2021.12.20 .jar [ path-to-scan] > hits.txt
40
+ java -jar log4j-detector-2021.12.22 .jar [ path-to-scan] > hits.txt
41
41
42
42
![ Terminal output from running java -jar log4j-detector.jar in a terminal] ( ./images/log4j-detector.png )
43
43
44
44
# More Example Usage: <a name =" itemmore " ></a >
45
45
46
46
```
47
- java -jar log4j-detector-2021.12.20 .jar ./samples
47
+ java -jar log4j-detector-2021.12.22 .jar ./samples
48
48
49
- -- github.com/mergebase/log4j-detector v2021.12.20 (by mergebase.com) analyzing paths (could take a while).
49
+ -- github.com/mergebase/log4j-detector v2021.12.22 (by mergebase.com) analyzing paths (could take a while).
50
50
-- Note: specify the '--verbose' flag to have every file examined printed to STDERR.
51
51
/opt/mergebase/log4j-detector/samples/clt-1.0-SNAPSHOT.jar contains Log4J-2.x >= 2.10.0 _VULNERABLE_
52
52
/opt/mergebase/log4j-detector/samples/infinispan-embedded-query-8.2.12.Final.jar contains Log4J-2.x >= 2.0-beta9 (< 2.10.0) _VULNERABLE_
@@ -81,9 +81,9 @@ java -jar log4j-detector-2021.12.20.jar ./samples
81
81
# Usage <a name =" itemusage " ></a >
82
82
83
83
```
84
- java -jar log4j-detector-2021.12.20 .jar
84
+ java -jar log4j-detector-2021.12.22 .jar
85
85
86
- Usage: java -jar log4j-detector-2021.12.20 .jar [--verbose] [--json] [--stdin] [--exclude=X] [paths to scan...]
86
+ Usage: java -jar log4j-detector-2021.12.22 .jar [--verbose] [--json] [--stdin] [--exclude=X] [paths to scan...]
87
87
88
88
--json - Output STDOUT results in JSON. (Errors/warning still emitted to STDERR)
89
89
--stdin - Read STDIN for paths to explore (one path per line)
@@ -95,7 +95,7 @@ Exit codes: 0 = No vulnerable Log4J versions found.
95
95
1 = At least one legacy Log4J 1.x version found.
96
96
2 = At least one vulnerable Log4J version found.
97
97
98
- About - MergeBase log4j detector (version 2021.12.20 )
98
+ About - MergeBase log4j detector (version 2021.12.22 )
99
99
Docs - https://github.com/mergebase/log4j-detector
100
100
(C) Copyright 2021 Mergebase Software Inc. Licensed to you via GPLv3.
101
101
```
@@ -106,7 +106,7 @@ Docs - https://github.com/mergebase/log4j-detector
106
106
git clone https://github.com/mergebase/log4j-detector.git
107
107
cd log4j-detector/
108
108
mvn install
109
- java -jar target/log4j-detector-2021.12.20 .jar
109
+ java -jar target/log4j-detector-2021.12.22 .jar
110
110
```
111
111
# Testing: <a name =" itemtesting " ></a >
112
112
@@ -169,8 +169,8 @@ to build it, and since this tool has zero dependencies, it shouldn't take too lo
169
169
satisfaction. If you don't trust Maven you can go directly into the "src/main/java/com/mergebase/log4j" directory and
170
170
type "javac \* .java". That works, too!
171
171
172
- We also sign the pre-compiled jar we keep in the root of the repository (./log4j-detector-2021.12.20 .jar) with the
173
- MergeBase code signing key. Please run "jarsigner -verbose -verify log4j-detector-2021.12.20 .jar" to confirm this.
172
+ We also sign the pre-compiled jar we keep in the root of the repository (./log4j-detector-2021.12.22 .jar) with the
173
+ MergeBase code signing key. Please run "jarsigner -verbose -verify log4j-detector-2021.12.22 .jar" to confirm this.
174
174
175
175
# What Is MergeBase All About? <a name =" itemmergebase " ></a >
176
176
0 commit comments