Log4j Security Notice & IOTA v2.2.1
Concerning Log4j and Profitap:
Potentially affected products
Profitap IOTA (any version).
Non-affected products
All other Profitap products.
Scope of the vulnerability:
CVE-2021-44228, CVE-2021-45046 vulnerabilities can only be exploited on IOTA in case of compromised credentials. IOTA has no known vulnerability to CVE-2021-45105.
Profitap recommends changing login credentials using a strong, unique password.
Profitap is rolling out IOTA software v2.2.1 to eliminate any risk related to the known Log4j vulnerabilities (CVE-2021-44228, CVE-2021-45046) through IOTA. Profitap provides this update freely to all IOTA users.