Skip to content

ED 22-02, Mitigate Apache Log4j Vulnerability

RetiredCISA · Emergency Directive · December 17, 2021

Summary

Required agencies to find systems using the Apache Log4j logging library, patch, mitigate, or remove software affected by the critical Log4j flaws, and report affected products and actions taken to CISA.

Read it on www.cisa.gov

What FedXchange has recorded

No changes recorded. The watch records a new document and any change in its status.

Issuer
Cybersecurity and Infrastructure Security Agency (CISA)
Type
Emergency Directive
Number
ED 22-02
Issued
December 17, 2021
Status
Retired

Closed by its issuer (CISA's term for a directive that has done its job).

CISA lists this directive as closed; the sources checked do not state the closing date.

Get new governance by email

A weekly email on Fridays, an alert on the day the watch finds something new, or both. Free.

Send me

We use your address only to send what you choose, and every email has a one-click unsubscribe. Read the privacy notice.