QOS.CH Sarl logback是QOS.CH Sarl的日志框架。 Logback-core 1.5.34及之前版本存在输入验证错误漏洞,该漏洞源于条件配置文件处理中的ACE漏洞,可能导致攻击者通过破坏现有配置文件或在程序执行前注入环境变量绕过对CVE-2025-11226的保护,从而执行任意代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| QOS.CH Sarl | Logback-core | 0.9.20≤ 1.5.36 |
affected |
1.5.37 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| QOS.CH Sarl | Logback-core | 0.9.20 ~ 1.5.36 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet