All 8 CVE vulnerabilities found in Apache log4net, with AI-generated Chinese analysis, references, and POCs.
Vendor: n/a
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-105244 | Apache log4net: RemoteSyslogAppender silently deletes non-ASCII content CWE-116 | 5.3 | Medium | 2026-10-06 |
| CVE-2026-105243 | Apache log4net: Oversize EventLogAppender record silently discarded CWE-778 | 5.3 | Medium | 2026-10-06 |
| CVE-2026-105242 | Apache log4net: Request validation failure drops the event in the aspnet-request converter CWE-755 | 5.3 | Medium | 2026-10-06 |
| CVE-2026-105241 | Apache log4net: Unencodable content discards a whole SmtpPickupDirAppender batch CWE-176 | 5.3 | Medium | 2026-10-06 |
| CVE-2026-105240 | Apache log4net: NUL character truncates OutputDebugStringAppender records CWE-158 | 5.3 | Medium | 2026-10-06 |
| CVE-2026-105239 | Apache log4net: NUL character truncates EventLogAppender records CWE-158 | 5.3 | Medium | 2026-10-06 |
| CVE-2026-40021 | Apache Log4net: Silent log event loss in XmlLayout and XmlLayoutSchemaLog4J due to unescaped XML 1.0 forbidden characters CWE-116 | 9.1 | - | 2026-04-10 |
| CVE-2018-1285 | Apache log4net 代码问题漏洞 | 9.8 | - | 2020-05-11 |
All 8 known CVE vulnerabilities affecting Apache log4net with full Chinese analysis, references, and POCs where available.