<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic A question about Log4j vulnerability in Developer</title>
    <link>https://community.fabric.microsoft.com/t5/Developer/A-question-about-Log4j-vulnerability/m-p/2238847#M33443</link>
    <description>&lt;P&gt;Is Power BI affected by it? I've found nowhere denying nor confirming that Power BI uses it.&lt;BR /&gt;&lt;BR /&gt;My initial understanding is that it's not affected, but i want to be sure about it.&lt;/P&gt;</description>
    <pubDate>Tue, 14 Dec 2021 19:01:52 GMT</pubDate>
    <dc:creator>Anonymous</dc:creator>
    <dc:date>2021-12-14T19:01:52Z</dc:date>
    <item>
      <title>A question about Log4j vulnerability</title>
      <link>https://community.fabric.microsoft.com/t5/Developer/A-question-about-Log4j-vulnerability/m-p/2238847#M33443</link>
      <description>&lt;P&gt;Is Power BI affected by it? I've found nowhere denying nor confirming that Power BI uses it.&lt;BR /&gt;&lt;BR /&gt;My initial understanding is that it's not affected, but i want to be sure about it.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Dec 2021 19:01:52 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Developer/A-question-about-Log4j-vulnerability/m-p/2238847#M33443</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2021-12-14T19:01:52Z</dc:date>
    </item>
    <item>
      <title>Re: A question about Log4j vulnerability</title>
      <link>https://community.fabric.microsoft.com/t5/Developer/A-question-about-Log4j-vulnerability/m-p/2238994#M33445</link>
      <description>&lt;P&gt;As far as I can tell, there isn't any direct vulnerability but I'd recommend reading Microsoft's response yourself:&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://msrc-blog.microsoft.com/2021/12/11/microsofts-response-to-cve-2021-44228-apache-log4j2/" target="_blank"&gt;https://msrc-blog.microsoft.com/2021/12/11/microsofts-response-to-cve-2021-44228-apache-log4j2/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Dec 2021 21:34:24 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Developer/A-question-about-Log4j-vulnerability/m-p/2238994#M33445</guid>
      <dc:creator>AlexisOlson</dc:creator>
      <dc:date>2021-12-14T21:34:24Z</dc:date>
    </item>
    <item>
      <title>Re: A question about Log4j vulnerability</title>
      <link>https://community.fabric.microsoft.com/t5/Developer/A-question-about-Log4j-vulnerability/m-p/2243801#M33506</link>
      <description>&lt;P&gt;&lt;FONT face="tahoma,arial,helvetica,sans-serif"&gt;Hi&amp;nbsp;Anonymous&lt;/LI-USER&gt;,&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="tahoma,arial,helvetica,sans-serif"&gt;Thank you so much for bringing this issue to our attention. &lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="tahoma,arial,helvetica,sans-serif"&gt;Overall, Microsoft is aware of the log4j exploit and actively working with all services to remediate any issues. The Power BI service does not have any known reliance on this vulnerable library.&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="tahoma,arial,helvetica,sans-serif"&gt;For the most up-to-date information on the issue status, please refer to the &lt;A href="https://msrc-blog.microsoft.com/2021/12/11/microsofts-response-to-cve-2021-44228-apache-log4j2/" target="_self"&gt;MSRC Advisory&lt;/A&gt; and &lt;A href="https://www.microsoft.com/security/blog/2021/12/11/guidance-for-preventing-detecting-and-hunting-for-cve-2021-44228-log4j-2-exploitation/" target="_self"&gt;Microsoft Security Threat Intelligence&lt;/A&gt; sites.&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="tahoma,arial,helvetica,sans-serif"&gt;Regards,&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="tahoma,arial,helvetica,sans-serif"&gt;Xiaoxin Sheng&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 20 Dec 2021 07:15:28 GMT</pubDate>
      <guid>https://community.fabric.microsoft.com/t5/Developer/A-question-about-Log4j-vulnerability/m-p/2243801#M33506</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2021-12-20T07:15:28Z</dc:date>
    </item>
  </channel>
</rss>

