WASHINGTON—A newly discovered vulnerability in a widely used software library is causing mayhem on the internet, forcing cyber defenders to scramble as hackers rush to exploit the weakness.
The vulnerability, known as Log4j, comes from a popular open-source product that helps software developers track changes in applications that they build. It is so popular and embedded across many companies’ programs that security executives expect widespread abuse.