Get instant answers to issues or questions anytime - try our new AI Support Assistant.×

Nessus scan identified the Apache Log4j vulnerability CVE-2026-49844 in the DWS component

Home›Search›Nessus scan identified the Apache Log4j vulnerability CVE-2026-49844 in the DWS component

Nessus scan identified the Apache Log4j vulnerability CVE-2026-49844 in the DWS component

Last Updated: Sep 9, 2026|1 minute read|000045950

Issue

A Nessus scan identified the Apache Log4j vulnerability, CVE-2026-49844, in the DWS component.

Solution

The Tungsten Development team has reviewed CVE-2026-49844 and confirmed DWS is not affected by the vulnerability. About the log4j version, the Tungsten development team has created a fix to upgrade log4j to 2.26.1 The following libraries are now upgraded to version 2.26.1 to resolve the issue:
  • log4j-core-2.17.2.jar
  • log4j-api-2.17.2.jar
  • log4j-1.2-api-2.17.2.jar

Applies to  

ProductVersion
 Control Suite  CS 1.5.2

References

ControlSuite Vulnerability Overview


 

Was this topic helpful? Like Dislike