StackRadar

CVE-2025-68161

Medium

Advisory

Published 18 Dec 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.3
base score, highest
EPSS
0.008
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
254
of 17,781 indexed, latest versions
Container images
241
deployed by those charts
Fix available
1 of 1
affected package

Apache Log4j does not verify the TLS hostname in its Socket Appender

Carried by container images the latest versions of 254 of 17,781 indexed charts deploy, on 241 images.

Affected packageAffected versionsFixed inImages
log4j-coremaven2.6.2, 2.8.2, 2.9.0, 2.9.1+32 more2.25.3241
OSV records
GHSA-vc5p-v9hr-52mj

Charts affected

254 by stars
ChartLatestAffected imagesRadar Score
onosopencord3.0.21 of 1See more

onos opencord 3.0.2

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
onosproject/onos:2.2.144914a8d4b3f
log4j-core@2.13.0
2.25.3

Open the chart page →

12,927
voltha-infraopencord2.14.01 of 10See more

voltha-infra opencord 2.14.0

1 of the 10 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
voltha/voltha-onos:5.1.8e038acb950d3
log4j-core@2.17.0
2.25.3

Open the chart page →

41,044
sentinelopennms-helm-chartsVerified publisher0.4.01 of 2See more

sentinel opennms-helm-charts 0.4.0

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
opennms/sentinel:36.0.288869082a14f
log4j-core@2.24.3
2.25.3

Open the chart page →

2,024
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
log4j-core@2.17.2
2.25.3

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
log4j-core@2.17.2
2.25.3

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
log4j-core@2.17.2
2.25.3

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
log4j-core@2.17.2
2.25.3

Open the chart page →

13,551
dfdeweyosdfir-infrastructureVerified publisher1.0.01 of 3See more

dfdewey osdfir-infrastructure 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
opensearchproject/opensearch:2.12.0645d3d9390ad
log4j-core@2.21.0
2.25.3

Open the chart page →

1,190
osdfir-infrastructureosdfir-infrastructureVerified publisher2.15.01 of 40See more

osdfir-infrastructure osdfir-infrastructure 2.15.0

1 of the 40 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
opensearchproject/opensearch:3.1.0474ea3fdf25d
log4j-core@2.21.0
2.25.3

Open the chart page →

71,208
timesketchosdfir-infrastructureVerified publisher1.0.81 of 6See more

timesketch osdfir-infrastructure 1.0.8

1 of the 6 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
opensearchproject/opensearch:2.14.0466a49f379bb
log4j-core@2.21.0
2.25.3

Open the chart page →

1,753
flink-kubernetes-operatorpresto-loadbalancer1.10.01 of 1See more

flink-kubernetes-operator presto-loadbalancer 1.10.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
ghcr.io/apache/flink-kubernetes-operator:c703255e9c2ce635b89
log4j-core@2.23.1
2.25.3

Open the chart page →

3,277
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
log4j-core@2.8.2
2.25.3

Open the chart page →

9,606
punchline-javapunchplatform8.1.11 of 1See more

punchline-java punchplatform 8.1.1

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
ghcr.io/punchplatform/punchline-java:8.1.1d46ce7b96482
log4j-core@2.17.1
2.25.3

Open the chart page →

1,995
app-configradar-baseVerified publisher1.7.21 of 1See more

app-config radar-base 1.7.2

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
log4j-core@2.23.1
2.25.3

Open the chart page →

2,036
catalog-serverradar-baseVerified publisher0.9.31 of 1See more

catalog-server radar-base 0.9.3

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
log4j-core@2.20.0
2.25.3

Open the chart page →

2,418
data-dashboard-backendradar-baseVerified publisher0.6.21 of 1See more

data-dashboard-backend radar-base 0.6.2

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
log4j-core@2.21.0
2.25.3

Open the chart page →

2,019
radar-gatewayradar-baseVerified publisher1.9.01 of 2See more

radar-gateway radar-base 1.9.0

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
log4j-core@2.23.1
2.25.3

Open the chart page →

2,284
radar-kafkaradar-baseVerified publisher0.4.11 of 2See more

radar-kafka radar-base 0.4.1

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.46.0ac434a48ac2b
log4j-core@2.17.2
2.25.3

Open the chart page →

4,219
radar-outputradar-baseVerified publisher1.2.101 of 1See more

radar-output radar-base 1.2.10

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
log4j-core@2.21.0
2.25.3

Open the chart page →

2,465
radar-push-endpointradar-baseVerified publisher0.6.81 of 2See more

radar-push-endpoint radar-base 0.6.8

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
radarbase/radar-push-endpoint:0.4.0e1758508e033
log4j-core@2.23.0
2.25.3

Open the chart page →

3,018
radar-upload-connect-backendradar-baseVerified publisher0.9.11 of 1See more

radar-upload-connect-backend radar-base 0.9.1

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
log4j-core@2.21.1
2.25.3

Open the chart page →

2,532
strimzi-kafka-operatorradar-baseVerified publisher0.46.01 of 1See more

strimzi-kafka-operator radar-base 0.46.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.46.0ac434a48ac2b
log4j-core@2.17.2
2.25.3

Open the chart page →

1,951
sonarquberedhat-cop0.1.131 of 1See more

sonarqube redhat-cop 0.1.13

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
library/sonarqube:10.7.0-community0842dcd4c8f8
log4j-core@2.19.0
2.25.3

Open the chart page →

4,203
bastillion-upstreamrock8sVerified publisher0.1.01 of 1See more

bastillion-upstream rock8s 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
iamdorsah/bastillion:v0.1db83a0254d81
log4j-core@2.17.1
2.25.3

Open the chart page →

3,051
routr-connectroutr0.4.32 of 10See more

routr-connect routr 0.4.3

2 of the 10 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
fonoster/routr-edgeport:2.13.6d08a8a574a50
log4j-core@2.22.0
2.25.3
fonoster/routr-requester:2.13.6e0c823506eb2
log4j-core@2.22.0
2.25.3

Open the chart page →

11,021
archivaslamdev0.0.71 of 2See more

archiva slamdev 0.0.7

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
xetusoss/archiva:v2.2.588f25242b9ee
log4j-core@2.8.2
2.25.3

Open the chart page →

6,907
strimzi-user-operatorspartan0.4.01 of 1See more

strimzi-user-operator spartan 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
quay.io/strimzi/operator:0.45.158c727cd2e68
log4j-core@2.17.2
2.25.3

Open the chart page →

1,836
newrelic-private-minionsstarcher0.1.21 of 1See more

newrelic-private-minion sstarcher 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
quay.io/newrelic/synthetics-minion:2.2.2198c26e1b8f70
log4j-core@2.12.1
2.25.3

Open the chart page →

3,164
retail-store-sample-cart-chartstacksimplifyVerified publisher1.0.01 of 1See more

retail-store-sample-cart-chart stacksimplify 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
public.ecr.aws/aws-containers/retail-store-sample-cart:1.3.05d767569c976
log4j-core@2.24.3
2.25.3

Open the chart page →

1,068
retail-store-sample-orders-chartstacksimplifyVerified publisher2.0.01 of 1See more

retail-store-sample-orders-chart stacksimplify 2.0.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
public.ecr.aws/aws-containers/retail-store-sample-orders:1.3.0e85f034bcf48
log4j-core@2.24.3
2.25.3

Open the chart page →

1,223
retail-store-sample-ui-chartstacksimplifyVerified publisher1.0.01 of 1See more

retail-store-sample-ui-chart stacksimplify 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
public.ecr.aws/aws-containers/retail-store-sample-ui:1.3.0ce3f2e935eb3
log4j-core@2.24.3
2.25.3

Open the chart page →

836
sonarqubestakaterVerified publisher0.10.31 of 2See more

sonarqube stakater 0.10.3

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
library/sonarqube:6.7.6-community0ae5169e3d0f
log4j-core@2.9.1
2.25.3

Open the chart page →

11,841
teku-validatorstakewise4.3.21 of 2See more

teku-validator stakewise 4.3.2

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
consensys/teku:25.4.1bf6ecd2ea716
log4j-core@2.24.3
2.25.3

Open the chart page →

3,153
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
log4j-core@2.17.2
2.25.3

Open the chart page →

14,493
fdi-dotstatsuite-sfs-solrstatcan1.0.21 of 4See more

fdi-dotstatsuite-sfs-solr statcan 1.0.2

1 of the 4 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
log4j-core@2.16.0
2.25.3

Open the chart page →

6,065
solrstatcan1.5.101 of 3See more

solr statcan 1.5.10

1 of the 3 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
log4j-core@2.16.0
2.25.3

Open the chart page →

8,806
streamastreama1.0.11 of 2See more

streama streama 1.0.1

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
just1not2/streama:1.10.48a2305192dec
log4j-core@2.17.1
2.25.3

Open the chart page →

8,554
netforge-besvtechVerified publisher0.0.21 of 3See more

netforge-be svtech 0.0.2

1 of the 3 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
conductoross/conductor:3.31.09fba127693e6
log4j-core@2.23.1
2.25.3

Open the chart page →

4,674
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
log4j-core@2.17.1
2.25.3

Open the chart page →

18,756
zipkin-gcpt3n1.0.01 of 1See more

zipkin-gcp t3n 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
openzipkin/zipkin-gcp:0.15.2b5d51d1144e2
log4j-core@2.12.1
2.25.3

Open the chart page →

4,538
configservertwomartensVerified publisher0.2.01 of 1See more

configserver twomartens 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
2martens/configserver:latestbf1cdb80239d
log4j-core@2.23.1
2.25.3

Open the chart page →

2,144
timetabletwomartensVerified publisher0.2.01 of 1See more

timetable twomartens 0.2.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
2martens/timetable:latestbd1ba6ab84c9
log4j-core@2.25.1
2.25.3

Open the chart page →

1,527
wahlrechttwomartensVerified publisher0.3.01 of 1See more

wahlrecht twomartens 0.3.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
2martens/wahlrecht:latestba2c3040dab0
log4j-core@2.25.1
2.25.3

Open the chart page →

1,689
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
log4j-core@2.23.1
2.25.3

Open the chart page →

45,239
vertica-kafka-schedulervertica-chartsVerified publisher0.1.81 of 1See more

vertica-kafka-scheduler vertica-charts 0.1.8

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
opentext/kafka-scheduler:24.1.0cf89a88180fb
log4j-core@2.17.1
2.25.3

Open the chart page →

50
wazuhwazuh-helm-eksVerified publisher1.2.101 of 6See more

wazuh wazuh-helm-eks 1.2.10

1 of the 6 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
wazuh/wazuh-indexer:4.14.49c344d2b1757
log4j-core@2.21.0
2.25.3

Open the chart page →

5,484
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
log4j-core@2.11.1
2.25.3

Open the chart page →

5,460
hazelcastwenerme5.10.22 of 2See more

hazelcast wenerme 5.10.2

2 of the 2 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
hazelcast/hazelcast:5.5.05dd5d31c7a06
log4j-core@2.23.1
2.25.3
hazelcast/management-center:5.5.2991ddb27c251
log4j-core@2.23.1
2.25.3

Open the chart page →

2,634
elasticsearchwiremindVerified publisher8.19.01 of 1See more

elasticsearch wiremind 8.19.0

1 of the 1 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
library/elasticsearch:8.19.1289729a95066a
log4j-core@2.25.0
2.25.3

Open the chart page →

2,191
opendistro-eswitcom-gmbh1.13.31 of 3See more

opendistro-es witcom-gmbh 1.13.3

1 of the 3 container images this version deploys carry CVE-2025-68161.

Container imageDigestPackageFixed in
amazon/opendistro-for-elasticsearch:1.13.32acfa1dcc5f8
log4j-core@2.13.0
2.25.3

Open the chart page →

5,806

Container images carrying it

241 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
bde2020/hive:2.3.2-postgresql-metastore620267768985
log4j-core@2.6.2
2.25.3
4
quay.io/strimzi/operator:0.37.052f376e64b9b
log4j-core@2.17.2
2.25.3
4
library/solr:8.11.18c5f7881cebb
log4j-core@2.16.0
2.25.3
3
amazon/opendistro-for-elasticsearch:1.13.32acfa1dcc5f8
log4j-core@2.13.0
2.25.3
2
apachepulsar/pulsar-manager:v0.1.0b341ef76a852
log4j-core@2.10.0
2.25.3
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
log4j-core@2.23.1
2.25.3
2
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
log4j-core@2.19.0
2.25.3
2
empathyco/elasticsearch:6.6.2-memlockbcf4365ee7ec
log4j-core@2.11.1
2.25.3
2
gradiant/hive:2.3.2-postgresql-metastoreaae4f8a21f8b
log4j-core@2.6.2
2.25.3
2
hazelcast/hazelcast:5.5.05dd5d31c7a06
log4j-core@2.23.1
2.25.3
2
hazelcast/management-center:5.5.2991ddb27c251
log4j-core@2.23.1
2.25.3
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
log4j-core@2.17.2
2.25.3
2
inaccel/coral:2.18c53744ed70b
log4j-core@2.23.1
2.25.3
2
library/elasticsearch:7.17.35e6ac15bf6a5
log4j-core@2.17.1
2.25.3
2
library/elasticsearch:8.19.1289729a95066a
log4j-core@2.25.0
2.25.3
2
library/neo4j:5.20.052d3dec8d455
log4j-core@2.20.0
2.25.3
2
library/neo4j:4.3.2-enterprise56a9453c4064
log4j-core@2.14.0
2.25.3
2
mbentley/omada-controller:4.3f4e682274bed
log4j-core@2.23.1
2.25.3
2
metabase/metabase:v0.45.21fb334ce4820
log4j-core@2.17.1
2.25.3
2
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
log4j-core@2.17.2
2.25.3
2
opensearchproject/opensearch:2.1.04254021a8c71
log4j-core@2.17.1
2.25.3
2
opensearchproject/opensearch:2.18.07f6fa1efee8f
log4j-core@2.21.0
2.25.3
2
opensearchproject/opensearch:1.1.0967d7f57f72f
log4j-core@2.13.0
2.25.3
2
scorpiobroker/scorpio:config-server_1.1.0c46c1517e523
log4j-core@2.11.2
2.25.3
2
ghcr.io/flyteorg/flyte-connectors:py3.12-v2.3.6896fc7b18b1b
log4j-core@2.24.3
2.25.3
2
public.ecr.aws/aktosecurity/confluentinc-cp-kafka:8.1.1-1-ubi9d20bd62f0182
log4j-core@2.24.3
2.25.3
2
quay.io/strimzi/operator:0.39.002f6f143fc6d
log4j-core@2.17.2
2.25.3
2
quay.io/strimzi/operator:0.46.0ac434a48ac2b
log4j-core@2.17.2
2.25.3
2
2martens/configserver:latestbf1cdb80239d
log4j-core@2.23.1
2.25.3
1
2martens/timetable:latestbd1ba6ab84c9
log4j-core@2.25.1
2.25.3
1
2martens/wahlrecht:latestba2c3040dab0
log4j-core@2.25.1
2.25.3
1
5200710/hive:3.1.3-postgresql-metastoree34ab066d2ed
log4j-core@2.17.1
2.25.3
1
ahmetfurkandemir/iceberg-rest-fixture-postgresql:1.10.0142231a0b8b7
log4j-core@2.20.0
2.25.3
1
airbyte/airbyte-api-server:0.63.8e1c5e7cfec8a
log4j-core@2.23.1
2.25.3
1
airbyte/cron:0.40.17caf4f551c546
log4j-core@2.17.2
2.25.3
1
aktosecurity/data-ingestion-service213aded7adc5
log4j-core@2.24.2
2.25.3
1
alfio/alf.io:2.0-M5-26060c836a081446
log4j-core@2.24.3
2.25.3
1
alfresco/alfresco-activemq:5.18.7-jre17-rockylinux85472f88d9b0b
log4j-core@2.24.1
2.25.3
1
amazon/opendistro-for-elasticsearch:1.4.06df71eb04639
log4j-core@2.11.1
2.25.3
1
apache/activemq-artemis:2.44.00305c26f19ed
log4j-core@2.25.2
2.25.3
1
apache/activemq-artemis:2.37.0bae523439ee3
log4j-core@2.23.1
2.25.3
1
apache/druid:29.0.10cef139b6bf1
log4j-core@2.18.0
2.25.3
1
apache/hertzbeat:1.8.075d48a62748f
log4j-core@2.24.3
2.25.3
1
apacheignite/ignite:2.7.0d7deab68b8fa
log4j-core@2.11.0
2.25.3
1
apache/kafka:4.1.0bff074a5d005
log4j-core@2.24.3
2.25.3
1
apachepinot/pinot:latest-jdk110018bb04ced7
log4j-core@2.17.1
2.25.3
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
log4j-core@2.18.0
2.25.3
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
log4j-core@2.17.1
2.25.3
1
apachepulsar/pulsar:2.6.14db6ff0b4045
log4j-core@2.10.0
2.25.3
1
apachepulsar/pulsar:3.0.79c9947de139d
log4j-core@2.18.0
2.25.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.