https://github.com/apache/logging-log4j2/discussions/4168
https://github.com/apache/logging-log4j2/issues/4255
https://logging.apache.org/security/faq.html#deserialization
Severity: Critical
ID: 341335
File Name: apache_log4j2_4255_fois_bypass_rce.nbin
Version: 1.1
Type: Remote
Family: Misc.
Published: 8/28/2026
Updated: 8/28/2026
Supported Sensors: Nessus
CPE: cpe:/a:apache:log4j
Exploit Available: true
Exploit Ease: Exploits are available
Exploited by Nessus: true
Vulnerability Publication Date: 10/1/2024