# Request for information about the Log4j vulnerability with Gitea

**URL:** <https://forum.gitea.com/t/request-for-information-about-the-log4j-vulnerability-with-gitea/4270>\
**Category:** Install/Maintain/Configure\
**Created:** [December 20, 2021, 7:47am UTC](https://forum.gitea.com/t/request-for-information-about-the-log4j-vulnerability-with-gitea/4270 "2021-12-20T07:47:40Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Roundcat](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.gitea.com/roundcat/32/3129_2.png) [@Roundcat](https://forum.gitea.com/u/Roundcat)\
**Post date:** [December 20, 2021, 7:47am UTC](https://forum.gitea.com/t/request-for-information-about-the-log4j-vulnerability-with-gitea/4270/1 "2021-12-20T07:47:40Z")

</div>

Hello,  
Following a serious vulnerability discovered in the Apache Log4j logging library, I wanted to know if Gitea is affected by this vulnerability.  
If so, what actions were taken to correct this vulnerability?  
Thank you for your feedback.

---

<div class="post-metadata">

**Author:** ![lunny](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.gitea.com/lunny/32/4701_2.png) [@lunny](https://forum.gitea.com/u/lunny)\
**Post date:** [December 20, 2021, 8:02am UTC](https://forum.gitea.com/t/request-for-information-about-the-log4j-vulnerability-with-gitea/4270/2 "2021-12-20T08:02:52Z")

</div>

Gitea itself is written with Golang as backend language so it never used Apache Log4j. And of course, Gitea could connect to Elastic Search to index codes. If you are using Gitea with Elastic Search and it’s affetcted by log4j, maybe you need to upgrade Elastic Search. I will post this to our twitter [https://twitter.com/giteaio](https://twitter.com/giteaio) so that more people know that.

---

<div class="post-metadata">

**Author:** ![Roundcat](https://sea2.discourse-cdn.com/flex020/user_avatar/forum.gitea.com/roundcat/32/3129_2.png) [@Roundcat](https://forum.gitea.com/u/Roundcat)\
**Post date:** [December 20, 2021, 8:15am UTC](https://forum.gitea.com/t/request-for-information-about-the-log4j-vulnerability-with-gitea/4270/3 "2021-12-20T08:15:38Z")

</div>

Thank you for your reply.  
I think it is a good idea topost this to your twitter.  
Have a good day.
