Hacker News new | ask | show | jobs
by drunkpotato 1649 days ago
The irony here is that if you use the log4j equivalent of parameterized queries, parameterized logging strings, you're still vulnerable to this CVE, even if you did everything right.