CVE-2016-8749: Apache Camel

Critical severity, CVSS 9.8. EPSS: 10.6% chance of exploitation in the next 30 days.

Apache Camel's Jackson and JacksonXML unmarshalling operation are vulnerable to Remote Code Execution attacks.

Affected products

  • Apache Camel: version 2.16.0 only; version 2.16.1 only; version 2.16.2 only; version 2.16.3 only; version 2.16.4 only; version 2.17.0 only; …

Published 2017-03-28. Last modified 2026-06-17.