pkg:Debian/apache-log4j2
17 total CVEsCRITICAL6HIGH5MEDIUM4LOW2
✅ Check your installed version
All known vulnerabilities
- from 0, < 2.7-2+deb9u1
- from 0, < 2.15.0-1~deb10u1
- from 0, < 2.15.0-1~deb11u1
- from 0, < 2.16.0-1~deb10u1
- from 0, < 2.16.0-1~deb11u1
- from 0, < 2.7-2
- from 0, < 2.17.0-1~deb10u1
- from 0, < 2.17.0-1~deb11u1
- HIGH7.5CVE-2026-34481Apache Log4j JSON Template Layout: Improper serialization of non-finite floating-point values in JsonTemplateLayoutfrom 0
- HIGH7.5CVE-2026-34479Apache Log4j 1 to Log4j 2 bridge: silent log event loss in Log4j1XmlLayout due to unescaped XML 1.0 forbidden charactersfrom 0
- HIGH7.5CVE-2026-34480Apache Log4j Core: Silent log event loss in XmlLayout due to unescaped XML 1.0 forbidden charactersfrom 0
- from 0, < 2.12.4-0+deb9u1
- from 0, < 2.17.1-1~deb11u1
- from 0, < 2.17.1-1~deb11u2
- from 0, < 2.17.1-1~deb11u2
- from 0, < 2.12.3-0+deb9u1
- from 0, < 2.13.3-1