CVE-2018-8027

CRITICAL9.8EPSS 2.5%

Apache is vulnerable to XXE in XSD validation processor

Published: 10/16/2018Modified: 3/11/2024

Description

Apache Camel 2.20.0 to 2.20.3 and 2.21.0 Core is vulnerable to XXE in XSD validation processor.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1CRITICAL9.8CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References (21)