Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Apache Camel — Vulnerabilities & Security Advisories 56

All 56 CVE vulnerabilities found in Apache Camel, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities for Apache Camel, a Java-based integration framework. It collects known security flaws affecting the product, covering advisory releases from 2015 through the present. Readers can use this resource to track vendor-issued advisories, analyze the distribution of weakness classes, and review the historical vulnerability record for the product.

Vendor: Apache Software Foundation

CVE ID Title CVSS Severity Published
CVE-2026-47323 Apache Camel: Camel-CXF Message Header Injection via Missing Inbound Filtering CWE-178 - - 2026-05-19
CVE-2026-27172 Apache Camel: Unsafe Java deserialization in camel-consul ConsulRegistry allows arbitrary code execution via malicious values read from the Consul KV store CWE-502 8.8AI High AI 2026-04-27
CVE-2026-33453 Apache Camel: CoAP URI Query Parameter to Exchange Header Injection in camel-coap Allows Single-Packet Pre-Auth Remote Code Execution CWE-915 9.8AI Critical AI 2026-04-27
CVE-2026-33454 Apache Camel: Inbound Header Filter Missing in MailHeaderFilterStrategy Allows Remote Code Execution via MIME Header Injection (CVE-2025-30177 Variant) CWE-502 9.1AI Critical AI 2026-04-27
CVE-2026-40858 Apache Camel: Camel-Infinispan: Unsafe Deserialization in Remote Aggregation Repository CWE-502 8.8AI High AI 2026-04-27
CVE-2026-40860 Apache Camel: Unsafe Deserialization of JMS ObjectMessage in camel-jms, camel-sjms, camel-sjms2 and camel-amqp CWE-502 9.8AI Critical AI 2026-04-27
CVE-2026-23552 Apache Camel: Camel-Keycloak: Cross-Realm Token Acceptance Bypass in KeycloakSecurityPolicy CWE-346 5.3AI Medium AI 2026-02-23
CVE-2025-30177 Apache Camel: Camel-Undertow Message Header Injection via Improper Filtering 7.5 - 2025-04-01
CVE-2025-29891 Apache Camel: Camel Message Header Injection through request parameters CWE-164 8.2 - 2025-03-12
CVE-2025-27636 Apache Camel: Camel Message Header Injection via Improper Filtering 7.5 - 2025-03-09
CVE-2024-22371 Apache Camel issue on ExchangeCreatedEvent 2.9 Low 2024-02-26
CVE-2024-23114 Apache Camel: Camel-CassandraQL: Unsafe Deserialization from CassandraAggregationRepository CWE-502 9.8 - 2024-02-20
CVE-2024-22369 Apache Camel: Camel-SQL: Unsafe Deserialization from JDBCAggregationRepository CWE-502 9.8 - 2024-02-20
CVE-2020-11994 Apache Camel 注入漏洞 7.5 - 2020-07-08
CVE-2020-11972 Apache Camel RabbitMQ 代码问题漏洞 9.8 - 2020-05-14
CVE-2020-11973 Apache Camel Netty 代码问题漏洞 9.8 - 2020-05-14
CVE-2020-11971 Apache Camel 输入验证错误漏洞 7.5 - 2020-05-14
CVE-2019-0188 Apache Camel 代码问题漏洞 7.5 - 2019-05-28
CVE-2019-0194 Apache Camel 路径遍历漏洞 7.5 - 2019-04-30
CVE-2018-8041 Apache Camel Mail 路径遍历漏洞 5.3 - 2018-09-17
CVE-2018-8027 Apache Camel Core XSD validation processor 安全漏洞 9.8 - 2018-07-31
CVE-2017-12634 Apache Camel camel-castor组件安全漏洞 9.8 - 2017-11-15
CVE-2017-12633 Apache Camel camel-hessian组件安全漏洞 9.8 - 2017-11-15
CVE-2016-8749 Apache Camel 安全漏洞 9.8 - 2017-03-28
CVE-2017-5643 Apache Camel Validation Component 安全漏洞 7.4 - 2017-03-16
CVE-2017-3159 Apache Camel camel-snakeyaml组件安全漏洞 9.8 - 2017-03-07

All 56 known CVE vulnerabilities affecting Apache Camel with full Chinese analysis, references, and POCs where available.