RHSA-2024:2852HighCVSS 7.4
Red Hat Security Advisory: Red Hat Build of Apache Camel 4.0 for Quarkus 3.2 update is now available (RHBQ 3.2.12.GA)
🔗 CVE IDs covered (1)
📋 Description
CVE-2024-28752 — cxf-core: Apache CXF SSRF Vulnerability using the Aegis databinding
🎯 Affected products1
- Red Hat build of Apache Camel 4 for Quarkus 3
✅ Remediation
Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on. The References section of this erratum contains a download link (you must log in to download the update). Workaround: No mitigation is currently available for this vulnerability. Please make sure to update as the fixes become available.