<reportApi _class='io.jenkins.plugins.analysis.core.restapi.ReportApi'><issue><addedAt>0</addedAt><authorEmail>-</authorEmail><authorName>-</authorName><baseName>log4j-1.2-api-2.25.3.jar</baseName><category></category><columnEnd>0</columnEnd><columnStart>0</columnStart><commit>-</commit><description></description><fileName>govway//usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</fileName><fingerprint>FALLBACK-9b8f2042</fingerprint><lineEnd>1</lineEnd><lineStart>1</lineStart><message>GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</message><moduleName></moduleName><origin>grype</origin><originName>Grype Security Scanner</originName><packageName>-</packageName><reference>1444</reference><severity>NORMAL</severity><toString>log4j-1.2-api-2.25.3.jar(1,0): GHSA-h383-gmxw-35v2-log4j-1.2-api: : GHSA-h383-gmxw-35v2-log4j-1.2-api: JavaMatcherExactDirectMatch

GHSA-h383-gmxw-35v2 medium vulnerability for log4j-1.2-api package

For additional help see: **Vulnerability GHSA-h383-gmxw-35v2**
| Severity | Package | Version | Fix Version | Type | Location | Data Namespace | Link |
| --- | --- | --- | --- | --- | --- | --- | --- |
| medium  | log4j-1.2-api  | 2.25.3  | 2.25.4  | java-archive  | /usr/local/tomcat/webapps/govway.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar  | github:language:java  | [GHSA-h383-gmxw-35v2](https://github.com/advisories/GHSA-h383-gmxw-35v2)  |


A medium vulnerability in java-archive package: log4j-1.2-api, version 2.25.3 was found in image linkitaly/govway:master4 at: /usr/local/tomcat/webapps/govwayConsole.war:WEB-INF/lib/log4j-1.2-api-2.25.3.jar</toString><type>GHSA-h383-gmxw-35v2-log4j-1.2-api</type></issue><size>1</size><toString>1 warning (normal: 1)</toString></reportApi>