CVE-2020-11972
—CVSS 3.1
9.8 critical
EPSS
6%p92
Published
()
Modified
Description
Apache Camel RabbitMQ enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.
In the news0 stories
No ingested article mentions this CVE yet.