Executive brief
Deserialization of Untrusted Data in Log4j
Affected products
- Maven org.apache.logging.log4j:log4j-core
- Maven org.apache.logging.log4j:log4j
Junglewise Threat Intelligence
CVE-2017-5645 · Severity: low · CVSS 3 · Published 2020-01-06
Technologies: org.apache.logging.log4j:log4j-core (Maven). Vendors: Maven.
Deserialization of Untrusted Data in Log4j