An update on our log4j investigation and mitigation.

Incident Report for Reconstruct

Resolved

Regarding the log4j 2 exploit, also referred to as CVE-2021-44228. When CISA first reported the issue, Reconstruct began a thorough security investigation of the threat posed to our web application, mobile applications, and backend systems. This library is not used in our code base, nor is the affected version present in any dependencies. This vulnerability does not affect Reconstruct software.
Posted Dec 16, 2021 - 12:25 CST