logo

CVE-2021-44228 aka Log4Shell Vulnerability Explained

ID: 6bc49b54-c81c-57b1-bcd4-ce865a5cc944

STIX ID: report--6bc49b54-c81c-57b1-bcd4-ce865a5cc944

Feed Name: Aqua Security Blog

Threat Score
95/100

Date Published: 2021-12-12

Date Updated: 2026-04-26

...
...

Log4Shell (CVE-2021-44228) is a critical (CVSS 10) remote-code-execution vulnerability in the Log4j Java logging framework that was rapidly exploited in the wild; the report details exploitation vectors (e.g., specially formatted log strings, user-agent/SSID vectors), rapid development of scanning and exploitation tools, vendor advisories and mitigation steps (WAF tuning, patches, egress controls), and how Aqua’s platform detects, blocks and prevents post-exploitation activity in affected workloads.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.