Hello Apache Dev Team, Situation: Both the libraries log4j-1.2.9.jar and log4j-1.2.9-1.0.jar are getting flagged on the same server.
Question: If possible, I was wondering if you could provide some technical insight on the difference between both of the libraries. Moreover, please feel to point me towards any link as well that can help clarify my question. Thank you. Sincerely, Mitali This message (including any attachments) contains confidential information intended for a specific individual and purpose, and is protected by law. If you are not the intended recipient, you should delete this message and any disclosure, copying, or distribution of this message, or the taking of any action based on it, by you is strictly prohibited. Deloitte refers to a Deloitte member firm, one of its related entities, or Deloitte Touche Tohmatsu Limited ("DTTL"). Each Deloitte member firm is a separate legal entity and a member of DTTL. DTTL does not provide services to clients. Please see www.deloitte.com/about to learn more. v.E.1