CVE-2026-34477
Medium Severity
Description
The fix for CVE-2025-68161 https://logging.apache.org/security.html#CVE-2025-68161 was incomplete: it addressed hostname verification only when enabled via the...
Related Vulnerabilities
- CVE-2026-35655: OpenClaw before 2026.3.22 contains an identity spoofing vulnerability in ACP permission resolution t MEDIUM
- CVE-2026-40260: pypdf: Manipulated XMP metadata entity declarations can exhaust RAM MEDIUM
- CVE-2026-34621: Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Control CRITICAL
- CVE-2026-23781: An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A set of default debug user cred CRITICAL
- CVE-2026-40212: OpenStack Skyline before 5.0.1, 6.0.0, and 7.0.0 has a DOM-based Cross-Site Scripting (XSS) vulnerab MEDIUM
Related Coverage
Threat Actors