RHSA-2025:3091MediumCVSS 6.3

Red Hat Security Advisory: Red Hat Build of Apache Camel 4.8 for Quarkus 3.15 update is now available (RHBQ 3.15.3.SP2)

Published
March 20, 2025
Last Modified
August 4, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2025-27636 — camel-http: org.apache.camel: bypass of header filters via specially crafted response

🎯 Affected products1

  • Red Hat Build of Apache Camel 4.8 for Quarkus 3.15

✅ Remediation

Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on. The References section of this erratum contains a download link (you must log in to download the update). Workaround: Remove headers from your Camel routes; this can be accomplished in several ways, including globally or per route.

🔗 References (5)