CVE-2019-0188

7.5HIGH

Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component

Veröffentlicht: 5/28/2019Aktualisiert: 11/21/2024

Beschreibung

Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component, which was removed.

KI-AnalyseKI-gestützt

Betroffene Produkte

apachecamel
oracleenterprise_data_quality
11.1.1.9.0
oracleenterprise_manager_base_platform
13.3.0.0
oracleenterprise_manager_base_platform
13.4.0.0
oracleflexcube_private_banking
12.0.0
oracleflexcube_private_banking
12.1.0
oracleenterprise_repository
12.1.3.0.0

Referenzen