CVE-2017-5643: Apache Camel

High severity, CVSS 7.4. EPSS: 5.9% chance of exploitation in the next 30 days.

Apache Camel's Validation Component is vulnerable against SSRF via remote DTDs and XXE.

Affected products

  • Apache Camel: up to and including 2.16.0; version 2.17.0 only; version 2.17.1 only; version 2.17.2 only; version 2.17.3 only; version 2.17.4 only; …

Published 2017-03-16. Last modified 2026-06-17.