Vulnerabilities
Vulnerable Software
Apache:  >> Camel  >> 2.25.0  Security Vulnerabilities
Server-Side Template Injection and arbitrary file disclosure on Camel templating components
CVSS Score
7.5
EPSS Score
0.011
Published
2020-07-08
Apache Camel's JMX is vulnerable to Rebind Flaw. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.x, 3.0.0 up to 3.1.0 is affected. Users should upgrade to 3.2.0.
CVSS Score
7.5
EPSS Score
0.021
Published
2020-05-14
Apache Camel RabbitMQ enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.
CVSS Score
9.8
EPSS Score
0.042
Published
2020-05-14
Apache Camel Netty enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.
CVSS Score
9.8
EPSS Score
0.095
Published
2020-05-14


Contact Us

Shodan ® - All rights reserved