VYPR

Maven package

org.apache.camel/camel-sql

pkg:maven/org.apache.camel/camel-sql

Vulnerabilities (2)

  • CVE-2026-42527HigJul 6, 2026
    affected >= 4.14.0, < 4.14.8fixed 4.14.8

    Deserialization of Untrusted Data vulnerability in Apache Camel. The default ObjectInputFilter pattern shipped with several Apache Camel components for defense-in-depth deserialization filtering ('java.**;javax.**;org.apache.camel.**;!*', or the no-'javax.**' variant in the aggr

  • CVE-2024-22369HigFeb 20, 2024
    affected >= 3.0.0, < 3.21.4fixed 3.21.4

    Deserialization of Untrusted Data vulnerability in Apache Camel SQL ComponentThis issue affects Apache Camel: from 3.0.0 before 3.21.4, from 3.22.0 before 3.22.1, from 4.0.0 before 4.0.4, from 4.1.0 before 4.4.0. Users are recommended to upgrade to version 4.4.0, which fixes the