Threats Tagged 'cve-2026-34481'
View all threats tagged with 'cve-2026-34481'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-34481'
Click on any threat for detailed analysis and mitigation recommendations
Red Hat Security Advisory: Red Hat Offline Knowledge Portal security and content updateCVE-2025-11143 0 The Red Hat Offline Knowledge Portal has been updated to upgrade Solr from version 9. 8. 1 to 10. 0. 0 and to fix multiple security vulnerabilities identified by several CVEs including CVE-2025-11143 and CVE-2026-2332. This update addresses security issues related to the underlying components such as jetty-http and Solr, improving the security posture of the portal. The update also includes content updates as of May 26, 2026. No known exploits are reported in the wild for these vulnerabilities. The update is distributed as a container image available from the Red Hat container registry. Join the discussion | GCVE Database | 05/28/2026, 22:46:23 UTC Added: 05/29/2026, 21:01:50 UTC |
CVE-2026-34481: CWE-116 Improper Encoding or Escaping of Output in Apache Software Foundation Apache Log4j JSON Template LayoutCVE-2026-34481 0 Apache Log4j's JsonTemplateLayout https://logging.apache.org/log4j/2.x/manual/json-template-layout.html , in versions up to and including 2.25.3, produces invalid JSON output when log events contain non-finite floating-point values (NaN, Infinity, or -Infinity), which are prohibited by RFC 8259. This may cause downstream log processing systems to reject or fail to index affected records. An attacker can exploit this issue only if both of the following conditions are met: * The application uses JsonTemplateLayout. * The application logs a MapMessage containing an attacker-controlled floating-point value. Users are advised to upgrade to Apache Log4j JSON Template Layout 2.25.4, which corrects this issue. Join the discussion | CVE Database V5 | 04/10/2026, 15:43:00 UTC Added: 04/10/2026, 16:05:50 UTC |
Showing 1 to 2 of 2 results