Apache Software Foundation Camel 2.21.3

CPE Details

Apache Software Foundation Camel 2.21.3
2.21.3
2019-05-01
16h35 +00:00
2019-05-01
16h35 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:apache:camel:2.21.3:*:*:*:*:*:*:*

Informations

Vendor

apache

Product

camel

Version

2.21.3

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2019-0188 2019-05-28 16h10 +00:00 Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component, which was removed.
7.5
Haute
CVE-2019-0194 2019-04-30 19h30 +00:00 Apache Camel's File is vulnerable to directory traversal. Camel 2.21.0 to 2.21.3, 2.22.0 to 2.22.2, 2.23.0 and the unsupported Camel 2.x (2.19 and earlier) versions may be also affected.
7.5
Haute