VYPR

Camel Cometd Component

by Apache

CVEs (1)

  • CVE-2026-46454CriJul 6, 2026
    risk 0.00cvss 9.8epss 0.01

    Improper Input Validation vulnerability in Apache Camel Cometd Component. The camel-cometd component maps inbound Bayeux (CometD) message headers into the Camel Exchange without applying a HeaderFilterStrategy. CometdBinding.populateExchangeFromMessage copies the entire…