CVE-2024-13553
Mar, 01/04/2025 – 12:15
CVE-2024-13553
CVE-2024-13553
Mar, 01/04/2025 – 12:15
CVE-2024-13553
CVE-2025-3083
Mar, 01/04/2025 – 12:15
CVE-2025-3083
CVE-2025-30177
Mar, 01/04/2025 – 12:15
CVE-2025-30177
This issue affects Apache Camel: from 4.10.0 before 4.10.3, from 4.8.0 before 4.8.6.
Users are recommended to upgrade to version 4.10.3 for 4.10.x LTS and 4.8.6 for 4.8.x LTS.
Camel undertow component is vulnerable to Camel message header injection, in particular the custom header filter strategy used by the component only filter the "out" direction, while it doesn't filter the "in" direction.
This allows an attacker to include Camel specific headers that for some Camel components can alter the behaviour such as the camel-bean component, or the camel-exec component.
CVE-2025-2906
Mar, 01/04/2025 – 12:15
CVE-2025-2906
CVE-2025-2237
Mar, 01/04/2025 – 12:15
CVE-2025-2237
CVE-2025-3085
Mar, 01/04/2025 – 12:15
CVE-2025-3085
CVE-2025-3084
Mar, 01/04/2025 – 12:15
CVE-2025-3084
CVE-2025-27427
Mar, 01/04/2025 – 08:15
CVE-2025-27427
This issue affects Apache ActiveMQ Artemis from 2.0.0 through 2.39.0.
Users are recommended to upgrade to version 2.40.0 which fixes the issue.
CVE-2025-29868
Mar, 01/04/2025 – 08:15
CVE-2025-29868
This issue affects Apache Answer: through 1.4.2.
If a user uses an externally referenced image, when a user accesses this image, the provider of the image may obtain private information about the ip address of that accessing user.
Users are recommended to upgrade to version 1.4.5, which fixes the issue. In the new version, administrators can set whether external content can be displayed.
CVE-2025-30065
Mar, 01/04/2025 – 08:15
CVE-2025-30065
Users are recommended to upgrade to version 1.15.1, which fixes the issue.