CVE-2026-34478 - Apache Log4j Core: Log injection in Rfc5424Layout due to silent configuration incompatibility
CVE ID :CVE-2026-34478
Published : April 10, 2026, 3:40 p.m. | 26 minutes ago
Description :Apache Log4j Core's Rfc5424Layout https://logging.apache.org/log4j/2.x/manual/layouts.html#RFC5424...
Related Vulnerabilities
- CVE-2026-34483: Improper Encoding or Escaping of Output vulnerability in the JsonAccessLogValve component of Apache MEDIUM
- CVE-2026-6006: A vulnerability has been found in code-projects Patient Record Management System 1.0. The impacted e MEDIUM
- CVE-2026-6031: A vulnerability has been found in code-projects Simple IT Discussion Forum 1.0. This affects an unkn MEDIUM
- CVE-2026-33618: Chamilo LMS is a learning management system. Prior to .0.0-RC.3, the PlatformConfigurationController HIGH
- CVE-2026-34477: The fix for CVE-2025-68161 https://logging.apache.org/security.html#CVE-2025-68161 was incomplete: i MEDIUM
Related Coverage
Threat Actors