https://seclists.org/oss-sec/2026/q3/44: CVE-2026-48203: Apache Camel: Camel-Solr: The SolrParam. and SolrField. Exchange header pfixes used non-Camel-pfixed names that bypass the HTTP header filter, allowing an HTTP client to inject Solr query parameters (server-side quest forgery) and document fields
Published Jul 5, 2026
·Updated
Affected Software
1 affected component
Apache Apache Camel>4.0.0<=4.14.8, >4.15.0<=4.18.3, >4.19.0<=4.21.0