Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2021-45046] Log4j Vulnerability Activity on the HackerOne Platform

Summary

HackerOne's coverage of Log4Shell: the incomplete 2.15.0 patch led to CVE-2021-45046, upgraded to critical (CVSS 9.0), with advice to upgrade to Log4j 2.16.0 and add Log4j bugs to bounty scope.
Published
Collected

original ↗

Related coverage

back