CVE-2019-0194 PUBLISHED CVSS 7.5 HIGH

Apache Camel's File is vulnerable to directory traversal. Camel 2.21.0 to 2.21.3, 2.22.0 to 2.22.2, 2.23.0 and the unsupported Camel 2.x (2.19 and earlier) versions may be also affected.

EPSS 2.48% · 85.2th percentile

Risk Scores

CVSS v3.0
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
2.48%
85.2th percentile

Affected Products

VendorProductVersions
ApacheApache CamelCamel 2.21.0 to 2.21.3, Camel 2.22.0 to 2.22.2 and Camel 2.23.0 The unsupported Camel 2.x (2.19 and earlier) versions may be also affected.
Mavenorg.apache.camel:camel-core2.21.0, 2.22.0, 2.23.0
apachecamel2.0.0, 2.21.0, 2.22.0

Timeline

References

Open in Interactive Console →