CVE-2019-0188

7.5HIGH

Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component

发布于: 5/28/2019更新于: 11/21/2024

描述

Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component, which was removed.

AI分析AI驱动

受影响产品

apachecamel
oracleenterprise_data_quality
11.1.1.9.0
oracleenterprise_manager_base_platform
13.3.0.0
oracleenterprise_manager_base_platform
13.4.0.0
oracleflexcube_private_banking
12.0.0
oracleflexcube_private_banking
12.1.0
oracleenterprise_repository
12.1.3.0.0

参考资料