Anwendungssicherheit
🟠 CVE-2026-46585: High Schwachstelle
Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Apache Camel Lucene Component. The camel-lucene producer reads the search...
🟠 CVE-2026-46457: High Luecke in Apache Camel
Improper Input Validation vulnerability in Apache Camel NATS component. The camel-nats component maps inbound NATS message headers into the Camel...
🟠 CVE-2026-24012: High Luecke in Apache Iotdb
Uncontrolled Resource Consumption vulnerability in Apache IoTDB. Some interface fails to impose reasonable limits on the time span and aggregation interval...
🟠 CVE-2026-9165: High Schwachstelle
A flaw was found in Red Hat Advanced Cluster Security for Kubernetes (RHACS). Central does not limit the depth of...
🟠 CVE-2025-53829: High Schwachstelle
ownCloud is a file storage, synchronization, and sharing application. In ownCloud 10 prior to version 10.15.3, an attacker with administrative...
🟠 CVE-2026-49297: High Schwachstelle
Apache Airflow's Google provider operators `GCSToSFTPOperator` and `GCSTimeSpanFileTransformOperator` joined GCS object names returned by the bucket listing API directly to...
🟠 CVE-2026-42527: High Luecke in Apache Camel
Deserialization of Untrusted Data vulnerability in Apache Camel. The default ObjectInputFilter pattern shipped with several Apache Camel components for defense-in-depth...
🟠 CVE-2026-40859: High Luecke in Apache Camel
Deserialization of Untrusted Data vulnerability in Apache Camel. The camel-vertx-http component deserializes HTTP response bodies carrying the Content-Type application/x-java-serialized-object using...
🟠 CVE-2025-53831: High Schwachstelle
DrawIO for ownCloud is an application for using DrawIO with the file storage, synchronization, and sharing application ownCloud Classic. In...
🟠 CVE-2026-46591: High Schwachstelle
Improper Neutralization of Special Elements in Data Query Logic vulnerability in Apache Camel Neo4J component. The camel-neo4j producer builds the...