CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache, Java.
CVE
CVE-2020-11972
Severity
CRITICAL
CVSS
9.8
EPSS
5.51%
Apache Java
Original NVD Description
Apache Camel RabbitMQ enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.
Related CVEs
Other vulnerabilities affecting the same vendor(s)