296,746
Total vulnerabilities in the database
Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component, which was removed.
| Software | From | Fixed in |
|---|---|---|
| oracle / flexcube_private_banking | 12.1.0 | 12.1.0.x |
| oracle / flexcube_private_banking | 12.0.0 | 12.0.0.x |
| apache / camel | - | 2.24.0 |
| oracle / enterprise_manager_base_platform | 13.3.0.0 | 13.3.0.0.x |
| oracle / enterprise_manager_base_platform | 13.4.0.0 | 13.4.0.0.x |
| oracle / enterprise_data_quality | 11.1.1.9.0 | 11.1.1.9.0.x |
| oracle / enterprise_repository | 12.1.3.0.0 | 12.1.3.0.0.x |
org.apache.camel / camel-core
|
- | 2.24.0 |
org.apache.camel / camel-xmljson
|
- | 2.23.4.x |