VendorsQOSlogbackall versions
Vulnerabilities

QOS Logback

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2017-5929
QOS.ch Logback before 1.2.0 has a serialization vulnerability affecting the SocketServer and ServerSocketReceiver components.
Published 2017-03-13 · Modified
9.8EPSS 0.075
CVE-2021-42550
RCE from attacker with configuration edit priviledges through JNDI lookup
Published 2021-12-16 · Modified
8.5EPSS 0.044
CVE-2023-6378
Logback "receiver" DOS vulnerability
Published 2023-11-29 · Modified
7.5EPSS 0.009
CVE-2023-6481
Logback "receiver" DOS vulnerability CVE-2023-6378 incomplete fix
Published 2023-12-04 · Modified
7.5EPSS 0.007