CVE-2026-34479
Medium Severity
Description
The Log4j1XmlLayout from the Apache Log4j 1-to-Log4j 2 bridge fails to escape characters forbidden by the XML 1.0 standard, producing malformed XML output. Con...
Related Vulnerabilities
- CVE-2026-5772: A 1-byte stack buffer over-read was identified in the MatchDomainName function (src/internal.c) duri LOW
- CVE-2026-40073: @sveltejs/adapter-node has a BODY_SIZE_LIMIT bypass HIGH
- CVE-2026-29861: PHP-MYSQL-User-Login-System v1.0 was discovered to contain a SQL injection vulnerability via the use CRITICAL
- CVE-2026-5986: A weakness has been identified in Zod jsVideoUrlParser up to 0.5.1. The impacted element is the func MEDIUM
- CVE-2026-35666: OpenClaw before 2026.3.22 contains an allowlist bypass vulnerability in system.run approvals that fa HIGH
Related Coverage
Threat Actors