CVE Tools

Integration Camel K

20 CVEs tracked. 1 of them are in CISA KEV.

This hub aggregates every CVE we track for Integration Camel K, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.

Integration Camel K CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Integration Camel K CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-120
2026-010
2026-020
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 20 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • High1470%
  • Medium525%
  • Low15%

Latest CVEs

The 15 most recently published vulnerabilities affecting Integration Camel K.

  1. CVE-2024-7885Undertow: improper state management in proxy protocol parsing causes information leakage7.5
  2. CVE-2023-44487The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.7.5
  3. CVE-2022-4245Codehaus-plexus: xml external entity (xxe) injection4.3
  4. CVE-2022-4244Codehaus-plexus: directory traversal7.5
  5. CVE-2023-4853Quarkus: http security policy bypass8.1
  6. CVE-2023-1108Undertow: infinite loop in sslconduit during close7.5
  7. CVE-2022-41862In PostgreSQL, a modified, unauthenticated server can send an unterminated string during the establishment of Kerberos transport encryption. In certain conditions a server can cause a libpq client ...3.7
  8. CVE-2022-4492The undertow client is not checking the server identity presented by the server certificate in https connections. This is a compulsory step (at least it should be performed by default) in https and...7.5
  9. CVE-2022-1278A flaw was found in WildFly, where an attacker can see deployment names, endpoints, and any other data the trace payload may contain.7.5
  10. CVE-2022-2764A flaw was found in Undertow. Denial of service can be achieved as Undertow server waits for the LAST_CHUNK forever for EJB invocations.4.9
  11. CVE-2022-1259A flaw was found in Undertow. A potential security issue in flow control handling by the browser over HTTP/2 may cause overhead or a denial of service in the server. This flaw exists because of an ...7.5
  12. CVE-2022-0084A flaw was found in XNIO, specifically in the notifyReadClosed method. The issue revealed this method was logging a message to another expected end. This flaw allows an attacker to send flawed requ...7.5
  13. CVE-2021-4178A arbitrary code execution flaw was found in the Fabric 8 Kubernetes client affecting versions 5.0.0-beta-1 and above. Due to an improperly configured YAML parsing, this will allow a local and priv...6.7
  14. CVE-2021-3690A flaw was found in Undertow. A buffer leak on the incoming WebSocket PONG message may lead to memory exhaustion. This flaw allows an attacker to cause a denial of service. The highest threat from ...7.5
  15. CVE-2022-2053When a POST request comes through AJP and the request exceeds the max-post-size limit (maxEntitySize), Undertow's AjpServerRequestConduit implementation closes a connection without sending any resp...7.5

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store