RHSA-2026:3890HighCVSS 9.6

Red Hat Security Advisory: Red Hat Build of Apache Camel 4.14.4 for Spring Boot release.

Published
March 5, 2026
Last Modified
May 26, 2026

🔗 CVE IDs covered (4)

📋 Description

CVE-2025-12543 — undertow-core: Undertow HTTP Server Fails to Reject Malformed Host Headers Leading to Potential Cache Poisoning and SSRF CVE-2026-1002 — io.vertx/vertx-core: static handler component cache can be manipulated to deny the access to static files CVE-2026-27727 — com.mchange/mchange-commons-java: mchange-commons-java: Arbitrary code execution via JNDI dereferencing of crafted objects CVE-2026-27830 — c3p0: c3p0: Arbitrary Code Execution via deserialization of crafted objects

🔗 References (7)