cbcvebase.
CVE-2026-46587
published 2026-07-06

CVE-2026-46587: Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: through 4.14.7, from 4.15.0 through 4.18.2, from 4.19.0 through…

PriorityP345high7.3CVSS 3.1
AVNACLPRNUINSUCLILAL
EPSS
0.40%
32.3th percentile
Improper Input Validation vulnerability in Apache Camel. This issue affects Apache Camel: through 4.14.7, from 4.15.0 through 4.18.2, from 4.19.0 through 4.20.0. Users are recommended to upgrade to version 4.14.8, 4.18.3, 4.21.0, which fixes the issue.

Affected

6 ranges
VendorProductVersion rangeFixed in
apachecamel>= 4.0.0 < 4.14.84.14.8
apachecamel>= 4.15.0 < 4.18.34.18.3
apachecamel>= 4.19.0 < 4.21.04.21.0
apache_software_foundationapache_camel<= 4.14.7
apache_software_foundationapache_camel4.15.0 – 4.18.2
apache_software_foundationapache_camel4.19.0 – 4.20.0
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.