org.apache.logging.log4j:log4j-core
maven
pkg:maven/org.apache.logging.log4j:log4j-core
777 Dependabot PRs
2 days ago
334 repositories
13 repositories
Security Advisories
Improper validation of certificate with host mismatch in Apache Log4j SMTP appender
Remote code injection in Log4j
Incomplete fix for Apache Log4j vulnerability
Apache Log4j2 vulnerable to Improper Input Validation and Uncontrolled Recursion
Apache Log4j 1.x (EOL) allows Denial of Service (DoS)
Recent PRs
Bump the maven-dependencies group across 1 directory with 38 updates
chore(deps): bump org.apache.logging.log4j:log4j-core from 2.14.1 to 2.17.1
faccenda-org/vulnspringbootapp #37
build(deps): bump org.apache.logging.log4j:log4j-core from 2.24.3 to 2.25.2
Lopesnextgen/aether-lunar-launcher #5
Bump org.apache.logging.log4j:log4j-core from 2.14.0 to 2.25.2
ankitagavali161/security-ghas-demo #8
chore(deps): Bump the all group across 1 directory with 52 updates
risingwavelabs/risingwave #23829
Bump the azure-dependencies group in /provider/search-azure with 33 updates
Bump the logging group with 5 updates
danielscholl-osdu/indexer-queue #4
Bump the dev-dependencies group across 1 directory with 22 updates
NASA-PDS/registry-legacy-solr #221
build(deps): bump the dependencies group across 1 directory with 119 updates
froque/jooby #134
deps(deps): bump the maven-dependencies group across 1 directory with 61 updates
QRun-IO/qqq #266
Bump the maven-patch-group group across 1 directory with 13 updates
rvesse/jena #193
chore(deps): bump the maven-dependencies group with 19 updates
fast-ish/aws-webapp-infra #102
chore(deps): bump the maven-dependencies group in /fn/layer/shared with 7 updates
fast-ish/aws-webapp-infra #100
Bump the dependencies group with 12 updates
Jeff-State-Programming/bytebin #1
Bump the azure-dependencies group across 1 directory with 32 updates
Bump the core-dependencies group in /search-core with 40 updates
Bump the logging group with 5 updates
danielscholl-osdu/indexer-queue #5
chore(deps): bump the maven-dependencies group with 14 updates
chore(deps): Bump the all group across 1 directory with 39 updates
risingwavelabs/risingwave #23587
Bump the maven-dependencies group across 1 directory with 33 updates
gradle: bump the dependency-group group across 1 directory with 13 updates
navikt/sosialhjelp-avtaler-api #347
[12.1.x EE10] Bump the dev-dependencies group across 1 directory with 48 updates
jetty/jetty.project #13785
[12.1.x EE11] Bump the dev-dependencies group across 1 directory with 48 updates
jetty/jetty.project #13783
build(deps): bump the gradle-production-dependencies group across 2 directories with 14 updates
dastagiridev-tech/opentelemetry-demo #40
Bump org.apache.logging.log4j:log4j-core from 2.13.0 to 2.25.2
gradle: bump the dependency-group group with 11 updates
navikt/sosialhjelp-avtaler-api #346
[12.0.x EE10] Bump the dev-dependencies group across 1 directory with 37 updates
jetty/jetty.project #13765
gradle: bump the patch group with 10 updates
navikt/sosialhjelp-avtaler-api #344
Bump the build-dependencies group across 1 directory with 55 updates
kchobantonov/hibernate-search #265
Bump the upstream-libs group across 1 directory with 11 updates
usethesource/rascal-language-servers #819
build(deps): bump the gradle-production-dependencies group across 2 directories with 14 updates
AcheampongStephen/OpenTelemetry #41
Bump the build-dependencies group across 1 directory with 54 updates
kchobantonov/hibernate-search #263
build(deps): bump the gradle-production-dependencies group across 2 directories with 9 updates
AcheampongStephen/OpenTelemetry #38
Bump the gradle-all group across 1 directory with 39 updates
ambarishvrao/opensearch-migrations-public #9
[4.1] Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
hibernate/hibernate-reactive #2601
[2.4] Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
hibernate/hibernate-reactive #2592
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
DavideD/hibernate-reactive #134
Bump the patches group across 1 directory with 9 updates
National-Digital-Twin/fuseki-yaml-config #21
build(deps): bump the dependencies group across 1 directory with 109 updates
froque/jooby #127
deps(deps): bump the maven-dependencies group with 61 updates
QRun-IO/qqq #250
chore(deps): bump the patches group across 1 directory with 20 updates
National-Digital-Twin/rdf-abac #26
Bump the dependencies group across 1 directory with 15 updates
Bump the general-dependencies group across 1 directory with 6 updates
streamshub/flink-sql #117
Bump the dependencies group across 1 directory with 15 updates
scalar-labs/scalardl #282
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
Bump the patches group across 1 directory with 10 updates
telicent-oss/fuseki-yaml-config #58
Bump the maven-dependencies group across 1 directory with 18 updates
AxonIQ/axonserver-connector-java #444
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
mtarek6/first-test-automation-framework #5
chore(deps-dev): bump org.apache.logging.log4j:log4j-core from 2.25.0 to 2.25.2
sventorben/keycloak-home-idp-discovery #586
Package Details
| Name: | org.apache.logging.log4j:log4j-core |
| Ecosystem: | maven |
| PURL Type: | maven |
| Package URL: | pkg:maven/org.apache.logging.log4j:log4j-core |
| JSON API: | View JSON |
Security Advisories
Package Information
The Apache Log4j Implementation
| Repository: | https://github.com/apache/logging-log4j2 |
| Homepage: | https://logging.apache.org/log4j/3.x/ |
| Latest Release: |
2.24.3
12 months ago |
| Dependent Repos: | 82,953 |
| Dependent Packages: | 8,839 |
| Ranking: | Top 0.0126% by dependent repos Top 0.0068% by dependent pkgs |