Maven package intelligence

uk.co.nichesolutions.logging.log4j:log4j-core Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting the Maven package uk.co.nichesolutions.logging.log4j:log4j-core, including the gap beyond CISA KEV, confidence assessments, and sensor observations.

Total KEVs
1
Known exploited vulnerability affecting uk.co.nichesolutions.logging.log4j:log4j-core
In CISA KEV
1
Records also listed in the official catalog
Beyond CISA KEV
0
Additional exploited vulnerabilities absent from CISA KEV
Sensor Observed
1
uk.co.nichesolutions.logging.log4j:log4j-core KEV with sensor-observed exploitation activity

Review uk.co.nichesolutions.logging.log4j:log4j-core exploitation against the versions you run

All one exploited uk.co.nichesolutions.logging.log4j:log4j-core vulnerability tracked here is also listed in CISA KEV.

100%
Covered by CISA
0%
Beyond CISA

Attested uk.co.nichesolutions.logging.log4j:log4j-core vulnerabilities

1 known exploited vulnerability affecting this package.

Vulnerability CISA KEV Added
CVE-2021-44228

Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints

In CISA 10 Dec 2021

Recurring weakness patterns

Improper Input Validation, Uncontrolled Resource Consumption, and Deserialization of Untrusted Data account for mapped occurrences across this uk.co.nichesolutions.logging.log4j:log4j-core KEV portfolio.

Browse all KEVs →