Vulnerability · Injection
Log4Shell
A remote code execution flaw in Apache Log4j 2.x where JNDI lookups inside logged strings caused servers to fetch and execute attacker classes.
See a verified Log4Shell exploit
Pentrova surfaces Log4Shell findings with a replayable PoC artifact and the chain resolver escalates confirmed findings into business impact.