Find out if you have vulnerabilities that put you at risk

Test your applications
Toggle filtering controls
Report a new vulnerability
VULNERABILITYAFFECTSTYPEPUBLISHED
  • C
Expression Language Injection
apache-log4j2<2.16.0-1debian:unstable15 Dec 2021
  • H
Improper Input Validation
apache-log4j2<2.15.0-0.21.10.1ubuntu:21.1010 Dec 2021
  • H
Improper Input Validation
apache-log4j2<2.10.0-2ubuntu0.1ubuntu:18.0410 Dec 2021
  • H
Improper Input Validation
apache-log4j2<2.15.0-0.20.04.1ubuntu:20.0410 Dec 2021
  • H
Improper Input Validation
apache-log4j2<2.15.0-0.21.04.1ubuntu:21.0410 Dec 2021
  • H
Improper Input Validation
apache-log4j2<2.4-2ubuntu0.1~esm1ubuntu:16.0410 Dec 2021
  • C
Improper Input Validation
apache-log4j2<2.15.0-1~deb11u1debian:1110 Dec 2021
  • C
Improper Input Validation
apache-log4j2<2.15.0-1debian:unstable10 Dec 2021
  • C
Improper Input Validation
apache-log4j2<2.7-2+deb9u1debian:910 Dec 2021
  • C
Improper Input Validation
apache-log4j2<2.15.0-1debian:1310 Dec 2021
  • C
Improper Input Validation
apache-log4j2<2.15.0-1debian:1210 Dec 2021
  • C
Improper Input Validation
apache-log4j2<2.15.0-1~deb10u1debian:1010 Dec 2021
  • L
Improper Certificate Validation
apache-log4j2<2.12.3-0+deb9u1debian:925 Apr 2020
  • L
Improper Certificate Validation
apache-log4j2*debian:825 Apr 2020
  • L
Improper Certificate Validation
apache-log4j2<2.15.0-1~deb10u1debian:1025 Apr 2020
  • L
Improper Certificate Validation
apache-log4j2<2.13.3-1debian:1325 Apr 2020
  • L
Improper Certificate Validation
apache-log4j2<2.13.3-1debian:unstable25 Apr 2020
  • L
Improper Certificate Validation
apache-log4j2<2.13.3-1debian:1125 Apr 2020
  • L
Improper Certificate Validation
apache-log4j2<2.13.3-1debian:1225 Apr 2020
  • C
Deserialization of Untrusted Data
apache-log4j2<2.7-2debian:1017 Apr 2017
  • M
Deserialization of Untrusted Data
apache-log4j2*ubuntu:16.0417 Apr 2017
  • C
Deserialization of Untrusted Data
apache-log4j2*debian:817 Apr 2017
  • C
Deserialization of Untrusted Data
apache-log4j2<2.7-2debian:917 Apr 2017
  • C
Deserialization of Untrusted Data
apache-log4j2<2.7-2debian:1117 Apr 2017
  • C
Deserialization of Untrusted Data
apache-log4j2<2.7-2debian:1217 Apr 2017
  • C
Deserialization of Untrusted Data
apache-log4j2<2.7-2debian:unstable17 Apr 2017
  • C
Deserialization of Untrusted Data
apache-log4j2<2.7-2debian:1317 Apr 2017
  • M
Deserialization of Untrusted Data
eap7-log4j<0:2.17.1-2.redhat_00002.1.el9eaprhel:926 Mar 2023
  • M
Creation of Temporary File With Insecure Permissions
eap7-log4j<0:2.17.1-2.redhat_00002.1.el9eaprhel:926 Mar 2023
  • M
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
eap7-log4j<0:2.17.1-2.redhat_00002.1.el9eaprhel:920 Mar 2022