Issues fixed in MarkLogic Server 10.0-6.6
- Last Updated: April 6, 2026
- 1 minute read
- MarkLogic Server
- Documentation
Released: Jul 28, 2023
The following issues have been addressed in this release:
| Platform | Component | Bug ID | Details |
|---|---|---|---|
| all | BUG-60413 | MLCMD uses log4j 2.14.1, which has a critical secure vulnerability MLCMD uses log4j 2.14.1, which has a critical security vulnerability (see https://nvd.nist.gov/vuln/detail/CVE-2021-44228). Log4j 2.16 addresses the vulnerability. |
|
| all | BUG-60457 | op.fromSearch() and op.fromSearchDocs() security constraints Optic queries using either op.fromSearch()/op:from-search() or op.fromSearchDocs()/op:from-search-docs() operators may return more documents than theoretically accessible. |