Releases401
Frequency2 weeks 1 day
Last Release
Stars6.23K
Apache Camel is an open source integration framework with 300+ connectors. Write routes in Java, YAML, or XML. Run on Spring Boot, Quarkus, or standalone. Apache License 2.0.

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH5 MEDIUM

Apache Camel prior to 2.24.0 contains an XML external entity injection (XXE) vulnerability (CWE-611) due to using an outdated vulnerable JSON-lib library. This affects only the camel-xmljson component, which was removed.