oss-sec mailing list archives

CVE-2022-45046: Apache Camel: LDAP Injection in Camel-LDAP


From: Andrea Cosentino <acosentino () apache org>
Date: Mon, 05 Dec 2022 12:17:51 +0000

Description:

LDAP Injection on camel-ldap component when using the filter option.

This issue is being tracked as CAMEL-18696

Credit:

Apache Camel would like to thank 4ra1n from Chaitin Tech

References:

https://camel.apache.org/security/CVE-2022-45046.html


Current thread: