VendorsApachecamelany version
Vulnerabilities

Apache Camel any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

84CVEs
CVE-2026-80354
Apache Camel K: Camel K Builder trait mavenProfiles ValueSources resolve tenant-named secrets in operator namespace
Published 2026-09-10 · Analyzed
8.1EPSS 0.003
CVE-2024-22369
Apache Camel: Camel-SQL: Unsafe Deserialization from JDBCAggregationRepository
Published 2024-02-20 · Analyzed
7.8EPSS 0.007
CVE-2026-40048
Apache Camel PQC: Unsafe Deserialization from FileBasedKeyLifecycleManager
Published 2026-04-27 · Modified
7.8EPSS 0.002
CVE-2014-0002
The XSLT component in Apache Camel before 2.11.4 and 2.12.x before 2.12.3 allows remote attackers to read arbitrary files and possibly have other unspecified impact via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.
Published 2014-03-20 · Modified
7.5EPSS 0.325
CVE-2020-11971
Apache Camel's JMX is vulnerable to Rebind Flaw. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.x, 3.0.0 up to 3.1.0 is affected. Users should upgrade to 3.2.0.
Published 2020-05-14 · Modified
7.5EPSS 0.140
CVE-2019-0188
Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component, which was removed.
Published 2019-05-28 · Modified
7.5EPSS 0.098
CVE-2019-0194
Apache Camel's File is vulnerable to directory traversal. Camel 2.21.0 to 2.21.3, 2.22.0 to 2.22.2, 2.23.0 and the unsupported Camel 2.x (2.19 and earlier) versions may be also affected.
Published 2019-04-30 · Modified
7.5EPSS 0.085
CVE-2014-0003
The XSLT component in Apache Camel 2.11.x before 2.11.4, 2.12.x before 2.12.3, and possibly earlier versions allows remote attackers to execute arbitrary Java methods via a crafted message.
Published 2014-03-20 · Modified
7.5EPSS 0.074
CVE-2020-11994
Server-Side Template Injection and arbitrary file disclosure on Camel templating components
Published 2020-07-08 · Modified
7.5EPSS 0.045
CVE-2026-55993
Apache Camel Atmosphere Websocket: The inbound consumer maps externally-supplied WebSocket query parameters into the Exchange without a HeaderFilterStrategy, allowing injection of Camel control headers - enabling influencing internal behaviour
Published 2026-07-06 · Analyzed
7.5EPSS 0.009
CVE-2026-46726
Apache Camel Vertx Websocket: The inbound consumer maps externally-supplied WebSocket query and path parameters into the Exchange without a HeaderFilterStrategy, allowing injection of Camel control headers
Published 2026-07-06 · Analyzed
7.5EPSS 0.009
CVE-2024-22371
Apache Camel issue on ExchangeCreatedEvent
Published 2024-02-26 · Analyzed
7.5EPSS 0.007
CVE-2026-46457
Apache Camel: Camel-NATS: Inbound NATS message headers are mapped into the Exchange without a configured HeaderFilterStrategy, allowing a client that can publish to the subject to inject Camel control headers
Published 2026-07-06 · Analyzed
7.5EPSS 0.007
CVE-2026-46585
Apache Camel Lucene: The query control headers used non-Camel-prefixed names (QUERY, RETURN_LUCENE_DOCS) that bypass the HTTP header filter, allowing an HTTP client to inject the full-text search query
Published 2026-07-06 · Analyzed
7.5EPSS 0.006
CVE-2026-55994
Apache Camel Iggy: The inbound consumer maps externally-supplied Iggy message user-headers into the Exchange without a HeaderFilterStrategy, allowing injection of Camel control headers - enabling control over internal behaviour
Published 2026-07-06 · Analyzed
7.5EPSS 0.006
CVE-2026-46592
Apache Camel: Camel-CXF: The SOAP operation-selection headers used non-Camel-prefixed names (operationName, operationNamespace) that bypass the HTTP header filter, allowing an HTTP client to redirect the invoked SOAP operation
Published 2026-07-06 · Analyzed
7.5EPSS 0.006
CVE-2026-66907
Apache Camel: Camel-Google-Storage: the consumer appended the remote object name to the configured downloadFileName directory without constraining the result
Published 2026-08-24 · Analyzed
7.5EPSS 0.006
CVE-2026-66908
Apache Camel: Camel-platform-http-main: when JWT authentication was configured with a keystore but no issuer or audience, the iss and aud claims were never validated, so any unexpired token signed by a trusted key was accepted
Published 2026-08-24 · Analyzed
7.5EPSS 0.004
CVE-2017-5643
Apache Camel's Validation Component is vulnerable against SSRF via remote DTDs and XXE.
Published 2017-03-16 · Modified
7.4EPSS 0.059
CVE-2026-46587
Apache Camel: Couchbase: Non-Camel-prefixed Exchange headers bypass HeaderFilterStrategy allowing operation override from untrusted input
Published 2026-07-06 · Analyzed
7.3EPSS 0.007
CVE-2026-46588
Apache Camel: CouchDB: Non-Camel-prefixed Exchange headers bypass HeaderFilterStrategy allowing operation override from untrusted input
Published 2026-07-06 · Analyzed
7.3EPSS 0.007
CVE-2026-49042
Apache Camel: langchain4j-tools: filter tool argument headers against declared parameters
Published 2026-07-06 · Analyzed
7.3EPSS 0.007
CVE-2026-43866
Apache Camel, Apache Camel: Camel JMS - CVE-2026-40860 fix bypass via DefaultExchangeHolder
Published 2026-07-06 · Analyzed
7.3EPSS 0.007
CVE-2013-4330
Apache Camel before 2.9.7, 2.10.0 before 2.10.7, 2.11.0 before 2.11.2, and 2.12.0 allows remote attackers to execute arbitrary simple language expressions by including "$simple{}" in a CamelFileName message header to a (1) FILE or (2) FTP producer.
Published 2013-10-04 · Modified
6.8EPSS 0.085
CVE-2025-30177
Apache Camel: Camel-Undertow Message Header Injection via Improper Filtering
Published 2025-04-01 · Analyzed
6.5EPSS 0.012
CVE-2026-49086
Apache Camel Dapr: Pub/Sub consumer copied the inbound CloudEvent's pub/sub-name and topic into producer-direction routing headers, allowing an actor who can publish to the subscribed topic to influence internal behaviour
Published 2026-07-06 · Analyzed
6.5EPSS 0.007
CVE-2026-49097
Apache Camel: Camel-IRC: The irc.sendTo (and other irc.*) Exchange header constants used non-Camel-prefixed names that bypass the HTTP header filter, allowing an HTTP client to redirect outgoing IRC messages to arbitrary channels or users
Published 2026-07-06 · Analyzed
6.5EPSS 0.007
CVE-2026-59230
Apache Camel: Camel-Mail: the MimeMultipart data format copied MIME headers onto the Camel message without a header filter strategy when unmarshalling with headersInline enabled
Published 2026-08-24 · Analyzed
6.5EPSS 0.004
CVE-2025-27636
Apache Camel: Camel Message Header Injection via Improper Filtering
Published 2025-03-09 · Analyzed
5.6EPSS 0.811
CVE-2026-60093
Apache Camel: Camel-Azure-Storage-DataLake: the downloadToFile operation built the local download target from the remote path name without constraining it to the configured fileDir
Published 2026-08-24 · Analyzed
5.5EPSS 0.003
CVE-2018-8041
Apache Camel's Mail 2.20.0 through 2.20.3, 2.21.0 through 2.21.1 and 2.22.0 is vulnerable to path traversal.
Published 2018-09-17 · Modified
5.3EPSS 0.098
CVE-2025-66169
Apache Camel Neo4j: Cypher injection vulnerability in Camel-Neo4j component
Published 2026-01-14 · Analyzed
5.3EPSS 0.007
CVE-2026-49098
Apache Camel: Camel-Kafka: The kafka.OVERRIDE_TOPIC (and other kafka.*) Exchange header constants used non-Camel-prefixed names that bypass the upstream HTTP header filter, allowing an HTTP client to redirect Kafka messages to an arbitrary topic
Published 2026-07-06 · Analyzed
5.3EPSS 0.006
CVE-2026-49365
Apache Camel: Camel-Netty-HTTP: The muteException consumer option defaulted to false, so a processing error returned the full Java stack trace in the HTTP response body, disclosing sensitive internal information to unauthenticated clients
Published 2026-07-06 · Analyzed
5.3EPSS 0.006
CVE-2026-56139
Apache Camel Undertow: The muteException consumer option defaulted to false, so a processing error returned the full Java stack trace in the HTTP response body, disclosing sensitive internal information to unauthenticated clients
Published 2026-07-06 · Analyzed
5.3EPSS 0.006
CVE-2026-46453
Apache Camel: Camel-Elasticsearch-Rest-Client: Exchange header constants without the Camel prefix bypass inbound HTTP header filtering, allowing untrusted clients to override the Elasticsearch query and operation
Published 2026-07-06 · Analyzed
5.3EPSS 0.006
CVE-2026-48206
Apache Camel JIRA: A set of non-Camel-prefixed Exchange header constants bypass the HTTP header filter, allowing an HTTP client to drive arbitrary JIRA issue operations using the endpoint's configured credentials
Published 2026-07-06 · Analyzed
5.3EPSS 0.006
CVE-2026-49099
Apache Camel Salesforce: Non-Camel-prefixed Exchange header constants bypass the HTTP header filter, allowing an HTTP client to influence internal behaviour
Published 2026-07-06 · Analyzed
5.3EPSS 0.005
CVE-2026-63621
Apache Camel: Camel-Knative: CloudEvent extension fields received in structured content mode were mapped onto message headers without applying any header filter strategy
Published 2026-08-24 · Analyzed
5.3EPSS 0.004
CVE-2015-0263
XML external entity (XXE) vulnerability in the XML converter setup in converter/jaxp/XmlConverter.java in Apache Camel before 2.13.4 and 2.14.x before 2.14.2 allows remote attackers to read arbitrary files via an external entity in an SAXSource.
Published 2015-06-03 · Modified
5.0EPSS 0.075
← Prev2 / 3Next →