Known vulnerabilities in log4j-slf4j
Vendor:
SUSE
Software:
log4j-slf4j
Software CPE:
cpe:2.3:o:suse:log4j-slf4j:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
6.9
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU128403 - Improper Encoding or Escaping of Output CVE-2026-34481 |
CWE-116 | Medium | 2.20.0-150200.4.33.1 | 28.04.2026 |
SB20260428217 SB20260513128 SB2026052731 and 1 more |
||
| #VU128402 - Improper Encoding or Escaping of Output CVE-2026-34480 |
CWE-116 | Medium | 2.20.0-150200.4.33.1 | 28.04.2026 |
SB20260428217 SB20260513128 SB2026052632 and 17 more |
||
| #VU128401 - Improper Encoding or Escaping of Output CVE-2026-34479 |
CWE-116 | Medium | 2.20.0-150200.4.33.1 | 28.04.2026 |
SB20260428217 SB20260513128 SB2026052632 and 15 more |
||
| #VU128399 - Improper Certificate Validation CVE-2026-34477 |
CWE-295 | Medium | 2.20.0-150200.4.33.1 | 28.04.2026 |
SB20260428217 SB20260513128 SB2026052632 and 18 more |
||
| #VU120231 - Improper Validation of Certificate with Host Mismatch CVE-2025-68161 |
CWE-297 | Medium | 2.20.0-150200.4.30.1 | 22.12.2025 |
SB2025122245 SB2026012084 SB2026012087 and 99 more |