Threats Tagged 'ghsa-v7h8-xhh6-gfj4'
View all threats tagged with 'ghsa-v7h8-xhh6-gfj4'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'ghsa-v7h8-xhh6-gfj4'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2026-78329 is a critical improper input validation vulnerability in the Apache Camel Undertow component. The issue arises because the default headerFilterStrategy used by UndertowEndpoint overwrites the intended UndertowHeaderFilterStrategy, causing undertow-specific header filtering to be bypassed. This allows legacy websocket. Exchange-header prefixed headers to be mapped onto the Exchange without proper filtering, potentially enabling an undertow WebSocket producer to dispatch messages incorrectly. The vulnerability affects Apache Camel versions from 4.11.0 before 4.14.9, from 4.15.0 before 4.18.4, and from 4.19.0 before 4.22.0. Upgrading to Apache Camel 4.22.0 or the respective LTS patch releases mitigates the issue. For deployments unable to upgrade immediately, explicit configuration of the headerFilterStrategy and manual header stripping are recommended as mitigations. Join the discussion | CVE Database V5 | 08/24/2026, 16:22:17 UTC Added: 08/24/2026, 16:52:48 UTC |
Showing 1 to 1 of 1 result