← All publishers

Kestrel Security B.V. — Security advisories

Security advisories published under Regulation (EU) 2024/2847, Annex I Part II(4).

CriticalPublished 2 Sept 2026 · CVE-2021-44228, CVE-2021-45046
Affected: 7.2.400 – 7.2.418 · Fixed in: 7.2.419 and later

A stale build-cache record shipped log4j-core 2.14.1 metadata in the 7.2 appliance SBOM. The shipped image runs 2.24.3; build 7.2.419 removes the stale record and this advisory documents the verification.