[ https://issues.apache.org/jira/browse/CAMEL-13073?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Andrea Cosentino reassigned CAMEL-13073: ---------------------------------------- Assignee: Andrea Cosentino > Spring Web Services Security Vulnerability > ------------------------------------------ > > Key: CAMEL-13073 > URL: https://issues.apache.org/jira/browse/CAMEL-13073 > Project: Camel > Issue Type: Bug > Components: camel-spring-ws > Affects Versions: 2.23.0 > Reporter: Wildcat > Assignee: Andrea Cosentino > Priority: Major > > Hi! Pivotal released a security advisory for spring-ws (1) which allows for > XXE attacks. The current camel-master repository lists spring-ws with > versions 2.4.2 and 3.0.4 which are both vulnerable. > The vulnerability is rated critical. Is any timely update planned? > 1) [https://pivotal.io/security/cve-2019-3773] -- This message was sent by Atlassian JIRA (v7.6.3#76005)