VYPR

camel-quarkus-support-xalan

by Apache

CVEs (1)

  • CVE-2026-88789HigOct 1, 2026
    risk 0.49cvss 8.6epss —

    Improper Restriction of XML External Entity Reference in the XSLT support extension (camel-quarkus-support-xalan) in Apache Camel Quarkus from 3.2.0 before 3.33.3 and from 3.34.0 before 3.40.0 on all platforms allows an attacker who supplies the XML document being transformed to…