Apache Camel Karavan 中存在不适当的输入验证漏洞。 当部署启动时,Karavan 会反序列化项目中的 文件,并将其包含的所有资源应用到 Kubernetes 集群中,但未对资源类型(resource kinds)进行限制,未拒绝具有安全风险的安全敏感 Pod 选项,也未固定目标命名空间(namespace)。因此,任何角色的已认证用户都可以利用该漏洞,在 Karavan 服务账户权限范围内应用任意 Kubernetes 资源,包括请求 hostNetwork、hostPID、hostIPC、ho
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache Camel Karavan | 4.0.0< 4.22.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache Camel Karavan | 4.0.0 ~ 4.22.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-103412 | 8.8 HIGH | Apache Camel Karavan: project file name path traversal when committing a project to Git |
| CVE-2026-108039 | Apache CXF: Prevent unbounded XML document size in StaxUtils by adding default element and | |
| CVE-2026-107938 | Apache CXF: The Netty HTTP client transport does not perform TLS hostname verification. | |
| CVE-2026-107937 | Apache CXF: The attachment header size and count limits can be bypassed, which allows deni | |
| CVE-2026-100227 | Apache CXF: XML Signature wrapping in JAX-RS XML Security | |
| CVE-2026-97791 | Apache CXF: STSTokenValidator can accept untrusted SAML assertions because it shares valid | |
| CVE-2026-97468 | Apache CXF: Authentication bypass via weak cache keys for validated STS tokens | |
| CVE-2026-86463 | Apache CXF: FIQL Query Parser Denial of Service | |
| CVE-2026-79650 | Apache CXF: OIDC RP Open Redirect | |
| CVE-2026-78384 | Apache CXF: Unbounded DEFLATE Decompression in CXF JOSE/JWE and SAML Processing (Decompres | |
| CVE-2026-73179 | Apache CXF: JPA authorization-code consume is non-atomic | |
| CVE-2026-71575 | Apache CXF: Inoperative max_age authentication-freshness check in OidcClientCodeRequestFil |
No comments yet