
A Java Agent that disables Apache Log4J's JNDI Lookup to mitigate CVE-2021-44228 ("Log4Shell").
A Java Agent that disables Apache Log4J's JNDI Lookup to mitigate CVE-2021-44228 ("Log4Shell").
If possible, update your program to use the latest Log4J version, as the vulnerability is fixed as of version 2.17.1. Otherwise, download log4noshell-0.8.1.jar and continue reading.
To use Java Agents, you must specify them with the -javaagent argument.
java -javaagent:path/to/log4noshell-0.8.1.jar -jar Program.jar
[!TIP] Please read Mojang's response to determine if you might need this patcher.
-javaagent:path/to/log4noshell-0.8.1.jar to the JVM Arguments text-field
-javaagent:path/to/log4noshell-0.8.1.jar -Xms2G -Xms2G...-javaagent:path/to/log4noshell-0.8.1.jar somewhere before the -jar in your launch/start/run command
java -javaagent:path/to/log4noshell-0.8.1.jar -jar minecraft_server.jar