RHSA-2024:2834HighCVSS 7.4

Red Hat Security Advisory: Red Hat Build of Apache Camel 4.4 for Quarkus 3.8 update is now available (RHBQ 3.8.4.SP1)

Published
May 16, 2024
Last Modified
August 4, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2024-28752 — cxf-core: Apache CXF SSRF Vulnerability using the Aegis databinding

🎯 Affected products1

  • Red Hat build of Apache Camel 4 for Quarkus 3

✅ Remediation

Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on. The References section of this erratum contains a download link (you must log in to download the update). Workaround: No mitigation is currently available for this vulnerability. Please make sure to update as the fixes become available.

🔗 References (3)