org.apache.logging.log4j:log4j-core
maven
pkg:maven/org.apache.logging.log4j:log4j-core
777 Dependabot PRs
2 days ago
334 repositories
13 repositories
Security Advisories
Improper validation of certificate with host mismatch in Apache Log4j SMTP appender
Remote code injection in Log4j
Incomplete fix for Apache Log4j vulnerability
Apache Log4j2 vulnerable to Improper Input Validation and Uncontrolled Recursion
Apache Log4j 1.x (EOL) allows Denial of Service (DoS)
Recent PRs
build(deps): bump the gradle-production-dependencies group across 2 directories with 8 updates
AcheampongStephen/OpenTelemetry #35
build(deps): bump the gradle group across 1 directory with 59 updates
Bump the upstream-libs group with 5 updates
SWAT-engineering/java-watch #73
build(deps): bump org.apache.logging.log4j:log4j-core from 2.24.1 to 2.25.2
Netcracker/qubership-inventory-tool-cli #142
Bump the upstream-libs group in /rascal-lsp with 9 updates
usethesource/rascal-language-servers #808
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2 in the maven-dev-deps group
jruby/jruby-rack #335
chore(deps): bump the java-dependencies group in /cloud-run-functions/java with 4 updates
DataDog/serverless-gcp-sample-apps #74
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
BernhardAngerer/simple-speedtest-client #51
Bump the gradle-all group across 1 directory with 29 updates
ambarishvrao/opensearch-migrations-public #6
Bump the maven-patch-group group across 1 directory with 16 updates
rvesse/jena #188
Bump the patches group with 11 updates
National-Digital-Twin/fuseki-yaml-config #20
build(deps): bump the dependencies group across 1 directory with 106 updates
froque/jooby #125
fix(deps): bump the prod-deps group across 1 directory with 8 updates
folio-org/applications-poc-tools #268
deps(deps): bump the maven-dependencies group across 1 directory with 65 updates
Kingsrook/qqq #231
build(deps): bump the gradle-dependencies group across 1 directory with 17 updates
AllayMC/Allay #723
chore(deps): bump org.apache.logging.log4j:log4j-core from 2.24.3 to 2.25.2
build(deps): bump the gradle-dependencies group across 1 directory with 16 updates
AllayMC/Allay #722
Bump the dependencies group with 4 updates
skodjob/test-frame #340
build(deps): bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
marcoklaassen/google-cal-sync #128
Bump the general-dependencies group with 4 updates
streamshub/flink-sql #116
Bump the dependencies group across 1 directory with 9 updates
Bump org.apache.logging.log4j:log4j-core from 2.20.0 to 2.25.2
huaweicloud/huaweicloud-sdk-java-obs #192
Bump the dependencies group across 1 directory with 9 updates
lucko/bytesocks #25
Bump the dependencies group across 1 directory with 10 updates
scalar-labs/scalardl #276
Bump the prod-deps group with 4 updates
dsingley/testPKI #50
build(deps): bump the gradle-dependencies group across 1 directory with 17 updates
AllayMC/Allay #721
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2 in /listmgr
Bump the all group across 2 directories with 4 updates
apache/logging-log4j-samples #374
Bump the patches group across 1 directory with 8 updates
telicent-oss/fuseki-yaml-config #57
maven: bump org.apache.logging.log4j:log4j-core from 2.13.0 to 2.25.2
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
DreamVoid/MiraiMC #578
Bump org.apache.logging.log4j:log4j-core from 2.25.0 to 2.25.2 in /sandbox-maven
tdupoiron-org/sandbox-maven #45
Bump the maven-patch-group group with 6 updates
apache/jena #3477
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
fix(deps): bump the prod-deps group with 4 updates
folio-org/folio-flow-engine #124
Bump the maven-dependencies group across 1 directory with 31 updates
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
ShaftHQ/SHAFT_ENGINE #2107
Bump the maven-dependencies group with 8 updates
AxonFramework/AxonFramework #3726
Bump the maven-dependencies group across 1 directory with 31 updates
fix(deps): bump the prod-deps group with 7 updates
folio-org/applications-poc-tools #267
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
z1lc/core #1487
build(deps): bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2 in /babduino
thomasleplus/CafeBab #246
Bump the dev-dependencies group in /java with 11 updates
wolpert/svarm #178
Bump the minor-and-patch group across 1 directory with 20 updates
basis-technology-corp/open-source-parent #190
Bump org.apache.logging.log4j:log4j-core from 2.25.1 to 2.25.2
build(deps): bump the gradle-production-dependencies group across 2 directories with 7 updates
AcheampongStephen/OpenTelemetry #19
Bump the prod-deps group across 1 directory with 7 updates
SonarCryptography/sonar-crypto #17
Bump the test group across 1 directory with 4 updates
Package Details
| Name: | org.apache.logging.log4j:log4j-core |
| Ecosystem: | maven |
| PURL Type: | maven |
| Package URL: | pkg:maven/org.apache.logging.log4j:log4j-core |
| JSON API: | View JSON |
Security Advisories
Package Information
The Apache Log4j Implementation
| Repository: | https://github.com/apache/logging-log4j2 |
| Homepage: | https://logging.apache.org/log4j/3.x/ |
| Latest Release: |
2.24.3
12 months ago |
| Dependent Repos: | 82,953 |
| Dependent Packages: | 8,839 |
| Ranking: | Top 0.0126% by dependent repos Top 0.0068% by dependent pkgs |