SonarQube, SonarCloud, and the Log4J vulnerability

@Rahul_Mahulkar yes, or you can set a new env to configure this in the official helm chart

env:
    - name: SONAR_SEARCH_JAVAADDITIONALOPTS
      value: "-Dlog4j2.formatMsgNoLookups=true"
2 Likes