Search Results
Updated 1h ago
23 results
for "log4j"
Clear all
CVE-2022-33915
7.0
HIGH
EPSS 0.00
Amazon AWS Apache Log4j <log4j-cve-2021-44228-hotpatch-1.3.5 - Priv...
CWE-362
Jun 17, 2022
CVE-2021-3100
8.8
HIGH
EPSS 0.00
Apache Log4j <log4j-cve-2021-44228-hotpatch-1.1-13 - Privilege Esca...
CWE-269
Apr 19, 2022
CVE-2022-23302
8.8
HIGH
EPSS 0.01
Apache Log4j < 1.2.17 - Insecure Deserialization
CWE-502
Jan 18, 2022
CVE-2021-4104
7.5
HIGH
EXPLOITED
3 PoCs
Analysis
EPSS 0.72
Apache Log4j < 12.0.0.4.0 - Insecure Deserialization
CWE-502
Dec 14, 2021
CVE-2022-23305
9.8
CRITICAL
3 PoCs
Analysis
EPSS 0.08
Apache Log4j < 1.2.17 - SQL Injection
CWE-89
Jan 18, 2022
CVE-2023-26464
7.5
HIGH
EXPLOITED
EPSS 0.00
Log4j <2 - DoS
CWE-502
Mar 10, 2023
CVE-2025-68161
4.8
MEDIUM
EPSS 0.00
Apache Log4j Core <2.25.2 - SSL Verification Bypass
CWE-295
Dec 18, 2025
CVE-2022-0070
8.8
HIGH
EPSS 0.00
Apache Log4j - Privilege Escalation
CWE-269
Apr 19, 2022
CVE-2021-45046
9.0
CRITICAL
KEV
RANSOMWARE
14 PoCs
Analysis
NUCLEI
EPSS 0.94
Apache Log4j < 2.12.2 - Remote Code Execution
CWE-917
Dec 14, 2021
CVE-2019-17571
9.8
CRITICAL
3 PoCs
Analysis
EPSS 0.42
Apache Log4j < 1.2.17 - Insecure Deserialization
CWE-502
Dec 20, 2019
CVE-2021-45105
5.9
MEDIUM
EXPLOITED
RANSOMWARE
10 PoCs
Analysis
EPSS 0.70
Apache Log4j < 2.3.1 - Improper Input Validation
CWE-674
Dec 18, 2021
CVE-2017-5645
9.8
CRITICAL
3 PoCs
Analysis
NUCLEI
EPSS 0.94
Apache Log4j < 2.8.2 - Insecure Deserialization
CWE-502
Apr 17, 2017
CVE-2021-44832
6.6
MEDIUM
EXPLOITED
RANSOMWARE
2 PoCs
Analysis
EPSS 0.54
Apache Log4j < 2.3.2 - Injection
CWE-74
Dec 28, 2021
CVE-2021-44228
10.0
CRITICAL
KEV
RANSOMWARE
438 PoCs
Analysis
NUCLEI
EPSS 0.94
Log4Shell HTTP Header Injection
CWE-502
Dec 10, 2021
CVE-2020-9488
3.7
LOW
1 PoC
Analysis
EPSS 0.00
Oracle Flexcube Core Banking < 2.3.2 - Improper Certificate Validation
CWE-295
Apr 27, 2020
CVE-2024-23049
9.8
CRITICAL
EPSS 0.04
Symphony <3.6.3 - RCE
CWE-77
Feb 05, 2024
CVE-2021-4125
8.1
HIGH
EPSS 0.01
Redhat Openshift < 4.6.52 - Insecure Deserialization
CWE-502
Aug 24, 2022
CVE-2022-29615
3.4
LOW
EPSS 0.00
SAP Netweaver Developer Studio - Insecure Deserialization
CWE-502
Jun 14, 2022
CVE-2022-24818
8.2
HIGH
1 PoC
Analysis
EPSS 0.08
GeoTools <26.4 - Code Injection
CWE-917
Apr 13, 2022
CVE-2022-23848
9.8
CRITICAL
EPSS 0.01
Alluxio <2.7.3 - Info Disclosure
Feb 20, 2022