Minecraft Log4j Exploit

Minecraft server chat exploit

Log4j exploit allows full access to the pc/device your server is running on.log4j

Upload file here

Upload server jar file here to check for log4j exploit

What is log4j?

The log4j exploit is a remote code execution exploit. It allows any user that can connect to your server to gain access to the computer the server is running on.

You can check if your server is vulnerable by typing the following in the console:

say ${date:YYYY}

If you see a response in your console with the current year, you server is vulnerable. Or you can upload your server jar file here to check.

Fixing log4j exploit

Minecraft vanilla

Minecraft.net for more info

Minecraft client will patch automatically. The patch for minecraft servers will depend on the version you are running. versions 1.18.1 or above are unaffected. for version below 1.18.1 you can visit theMinecraft.net for the latest info

Spigot

spigotmc.org for more info

1.18.1 is unaffected and 1.18 builds after 10-12-2021 are unaffected. Any other version is patched in the latest build. For the latest information visit thespigotmc.org site.

Bungeecord

spigotmc.org for more info

All versions off bungeecord are unaffected. For the latest info check thespigotmc.org site.

Paper

papermc discord for more info

Paper servers are vulnerable depending on de version and build. Safe versions are as follows:

- Paper 1.16.5 #792 or higher
- Paper 1.17 #399 or higher
- Paper 1.18 #66 or higher