Vulnerability Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Software Foundation Apache Camel.This issue affects Apache Camel: from 3.X through <=3.14.8, from 3.18.X through <=3.18.7, from 3.20.X through <= 3.20.5, from 4.X through <= 4.0.0-M3. Users should upgrade to 3.14.9, 3.18.8, 3.20.6 or 3.21.0 and for users on Camel 4.x update to 4.0.0-M1
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | Camel | >= 3.0.0, < 3.14.9 |
Related Weaknesses (CWE)
References
- https://lists.apache.org/thread/x4vy2hhbltb1xrvy1g6m8hpjgj2k7wghMailing ListVendor Advisory
- https://lists.apache.org/thread/x4vy2hhbltb1xrvy1g6m8hpjgj2k7wghMailing ListVendor Advisory
FAQ
What is CVE-2023-34442?
CVE-2023-34442 is a vulnerability with a CVSS score of 3.3 (LOW). Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Software Foundation Apache Camel.This issue affects Apache Camel: from 3.X through <=3.14.8, from 3.18.X through <=3....
How severe is CVE-2023-34442?
CVE-2023-34442 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-34442?
Check the references section above for vendor advisories and patch information. Affected products include: Apache Camel.