Issues fixed in MarkLogic Server 9.0-13.8
- Last Updated: April 6, 2026
- 1 minute read
- MarkLogic Server
- Documentation
Released: Feb 17, 2022
The following issues have been addressed in this release:
| Platform | Component | Bug ID | Details |
|---|---|---|---|
| all | security | BUG-57242 | MLCMD uses log4j 2.14.1, which has a critical secure vulnerability MLCMD uses log4j 2.14.1, which has a critical security vulnerability (see https://nvd.nist.gov/vuln/detail/CVE-2021-44228). Log4j 2.16 addresses the vulnerability. |
| all | mlcp | BUG-57199 | MLCP uses log4j 1.2.17 which contains critical security vulnerabilities MLCP has runtime dependencies on log4j 1.2.17, which is exposed to a critical security vulnerability CVE-2019-17571. |
| all | security | BUG-57300 | Slow LDAP authentication logging More detail is now available for diagnosing slow LDAP authentication. |
| all | security | BUG-57326 | LDAP negative cache Improved LDAP performance where LDAP lookup failure is common. Requires trace event to enable. Contact MarkLogic Technical Support for details. |