Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Apache Log4j vulnerability in some Java applications can lead to remote code execution

MINI-c64q-vxwr-c34m
Summary

The Apache Log4j library, used in some Java applications, has a flaw that can allow hackers to execute unauthorized code on a server. This could happen if an attacker sends a malicious message to a vulnerable application, potentially giving them control over the server. Affected organizations should update their Java applications to the latest version of Log4j as soon as possible to fix this issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
litellm-1.81 All versions
litellm-1.81-bin All versions
litellm-1.81-oci-entrypoint All versions
litellm-1.81-dashboard All versions
Original title
MINI-c64q-vxwr-c34m
Published: 8 Apr 2026 · Updated: 8 Apr 2026 · First seen: 8 Apr 2026