Back to Vulnerability Directory
CRITICALFixed upstream

CVE-2016-8749

Apache Camel's Jackson and JacksonXML unmarshalling operation are vulnerable to Remote Code…

Technology

Apache Camel

CVSS Score

9.8 / 10.0

Affected Versions

2.16.0; 2.16.1; 2.16.2; 2.16.3

Upstream Fix

See upstream advisory

Published

March 28, 2017

OSSeva Coverage

Fixed upstream

Description

Apache Camel's Jackson and JacksonXML unmarshalling operation are vulnerable to Remote Code Execution attacks.

Is your Apache Camel deployment affected?

If you're running 2.16.0; 2.16.1; 2.16.2; 2.16.3, you need this patch. Book a discovery call to get covered.