CVE-2026-34478 - Apache Log4j Core: Log injection in Rfc5424Layout due to silent configuration incompatibility
CVE ID :CVE-2026-34478
Published : April 10, 2026, 3:40 p.m. | 26 minutes ago
Description :Apache Log4j Core's Rfc5424Layout https://logging.apache.org/log4j/2.x/manual/layouts.html#RFC5424...
Related Vulnerabilities
- CVE-2026-34477: The fix for CVE-2025-68161 https://logging.apache.org/security.html#CVE-2025-68161 was incomplete: i MEDIUM
- CVE-2021-47960: A files or directories accessible to external parties vulnerability in Synology SSL VPN Client befor MEDIUM
- CVE-2026-4157: ChargePoint Home Flex revssh Service Command Injection Remote Code Execution Vulnerability. This vul HIGH
- CVE-2026-5994: A security flaw has been discovered in Totolink A7100RU 7.4cu.2313_b20191024. This issue affects the CRITICAL
- CVE-2026-39304: Denial of Service via Out of Memory vulnerability in Apache ActiveMQ Client, Apache ActiveMQ Broker, HIGH
Related Coverage
Threat Actors