Stripe + log4j vulnerability Platform Patch
Scheduled Maintenance Report for GiveGab Enterprise
Completed
The scheduled maintenance has been completed.
Posted Dec 14, 2021 - 18:30 EST
In progress
Scheduled maintenance is currently in progress. We will provide updates as necessary.
Posted Dec 14, 2021 - 17:31 EST
Update
*** We are accelerating the deployment of the patch tp 5:30PM EST ***
Posted Dec 14, 2021 - 17:21 EST
Scheduled
We will be applying a platform patch to address two un-related issues:
- update components that are known to be vulnerable to the RCE 0-day exploit found in log4j 2 logging software
- a known issue for the Stripe payment gateway that impacts donors whose first attempt to make a payment fails, and subsequent attempts with different payment accounts are also blocked.

During this patch window, we expect that:
- Any currently logged in Admins will automatically be logged out and will not be able to log in until the release is completed (Administrative Control Panel)
- All embedded Donation, Registration and RFI forms will continue to display and process submissions/transactions
- Secure Report URLs will function, however the delivery of the result file may take longer than usual for requests initiated during the release window (API)
- RESTful XML endpoints will function, however the delivery of the results may take longer than usual for requests initiated during the release window (API)
- Scheduled payment processing (ongoing and installment payments) will transact at their normally scheduled time
Posted Dec 14, 2021 - 14:56 EST
This scheduled maintenance affected: Core Platform (Admin Control Panel).