When Formwork became aware of the Log4Shell vulnerability (CVE-2021-44228), we began investigating our product to determine whether there had been any impact to any customer.


Formwork is not affected by log4shell vulnerability because it is not using log4j at all.


If your configuration is targeting oracle database please follow Oracle Security Alert Advisory - CVE-2021-44228 


This vulnerability continues to be exploited in the wild; we encourage any customers who manage environments containing Log4j to update to the latest version as soon as possible.