Junglewise Threat Intelligence

CVE-2017-5645: Deserialization of Untrusted Data in Log4j

CVE-2017-5645 · Severity: low · CVSS 3 · Published 2020-01-06

Technologies: org.apache.logging.log4j:log4j-core (Maven). Vendors: Maven.

Executive brief

Deserialization of Untrusted Data in Log4j

Affected products

  • Maven org.apache.logging.log4j:log4j-core
  • Maven org.apache.logging.log4j:log4j

Related threats