A remote code execution vulnerability in Apache Camel (CVSS Base Score 7.3) allows an attacker to execute arbitrary code. Affected versions are Apache Camel prior to 4.14.6, prior to 4.18.2, and prior to 4.19.0. A mitigation is available, though the article does not specify the exact patched versions or the workaround details.
[WID-SEC-2026-1601] Apache Camel: Schwachstelle ermöglicht Codeausführung CVSS Base Score 7.3 (hoch) CVSS Temporal Score 6.4 (mittel) Remoteangriff ja Datum 19.05.2026 Stand 20.05.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Windows Produktbeschreibung Apache Camel ist ein Integrations-Framework, das Enterprise Integration Patterns implementiert. Produkte 19.05.2026 Apache Camel <4.14.6 Apache Camel <4.18.2 Apache Camel <4.19.0 Angriff Angriff Ein Angreifer kann eine Schwachstelle in Apache Camel ausnutzen, um beliebigen Programmcode auszuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben