Compliance wiki
Search the reference notes of the security and controls team.
log4shell
CVE-2021-44228 — JNDI injection in the Log4j2 logging library. A single malicious log message could trigger remote code execution on millions of servers worldwide.