Forum Discussion
A question about Log4j vulnerability
Is Power BI affected by it? I've found nowhere denying nor confirming that Power BI uses it.
My initial understanding is that it's not affected, but i want to be sure about it.
- Anonymous4 years ago
Hi Anonymous,
Thank you so much for bringing this issue to our attention.
Overall, Microsoft is aware of the log4j exploit and actively working with all services to remediate any issues. The Power BI service does not have any known reliance on this vulnerable library.
For the most up-to-date information on the issue status, please refer to the MSRC Advisory and Microsoft Security Threat Intelligence sites.Regards,
Xiaoxin Sheng
2 Replies
- AlexisOlsonSuper User
As far as I can tell, there isn't any direct vulnerability but I'd recommend reading Microsoft's response yourself:
https://msrc-blog.microsoft.com/2021/12/11/microsofts-response-to-cve-2021-44228-apache-log4j2/
- AnonymousNot applicable
Hi Anonymous,
Thank you so much for bringing this issue to our attention.
Overall, Microsoft is aware of the log4j exploit and actively working with all services to remediate any issues. The Power BI service does not have any known reliance on this vulnerable library.
For the most up-to-date information on the issue status, please refer to the MSRC Advisory and Microsoft Security Threat Intelligence sites.Regards,
Xiaoxin Sheng