CVE-2021-4104
Published Dec 14, 2021JMSAppender in Log4j 1.2 is vulnerable to deserialization of untrusted data when the attacker has write access to the Log4j configuration. The attacker can provide TopicBindingNam…
- evidence mentions
- 11
- Buzz score
- 39.4