GHSA-6g2w-257v-3c9f
Dashboard / Vulnerabilities / GHSA-6g2w-257v-3c9f
Summary: Apache Camel information exposure vulnerability
Details: Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Software Foundation Apache Camel. This issue affects Apache Camel from 3.X through <=3.14.8, from 3.18.X through <=3.18.7, from 3.20.X through <= 3.20.5, from 4.X through <= 4.0.0-M3. Users should upgrade to 3.14.9, 3.18.8, 3.20.6 or 3.21.0 and for users on Camel 4.x update to 4.0.0-RC1
References: https://nvd.nist.gov/vuln/detail/CVE-2023-34442, https://github.com/apache/camel/commit/b61d5b6be4f98b673dc977ad1bc6f004642644ab, https://camel.apache.org/security/CVE-2023-34442.html, https://github.com/apache/camel, https://issues.apache.org/jira/browse/CAMEL-19421, https://lists.apache.org/thread/x4vy2hhbltb1xrvy1g6m8hpjgj2k7wgh
Affected packages
Package
Name: org.apache.camel:camel-jira
Purl: pkg:maven/org.apache.camel/camel-jira
Affected ranges
Type: ECOSYSTEM
Events:
