Lucene search

K
osvGoogleOSV:GHSA-H6RP-8V4J-HWPH
HistoryOct 16, 2018 - 11:13 p.m.

Apache Camel's XSLT component allows remote attackers to execute arbitrary Java methods

2018-10-1623:13:49
Google
osv.dev
8

0.478 Medium

EPSS

Percentile

97.5%

The XSLT component in Apache Camel 2.11.x before 2.11.4, 2.12.x before 2.12.3, and possibly earlier versions allows remote attackers to execute arbitrary Java methods via a crafted message.

References

0.478 Medium

EPSS

Percentile

97.5%