← العودة للجدول
CVE-2026-40453
CVE-2026-40453 — The fix for CVE-2025-27636 added setLowerCase(true) to HttpHeaderFilterStrategy
📅 2026-04-27
🔴 Critical 🔥 No NVD Exploit Microsoft CVSS 9.9 🎯 EPSS 0.19%

📋 الوصف الكامل

The fix for CVE-2025-27636 added setLowerCase(true) to HttpHeaderFilterStrategy so that case-variant header names such as 'CAmelExecCommandExecutable' are filtered out alongside 'CamelExecCommandExecutable'. The same setLowerCase(true) call was not applied to five non-HTTP HeaderFilterStrategy implementations: JmsHeaderFilterStrategy and ClassicJmsHeaderFilterStrategy in camel-

💻 الأنظمة المتأثرة

The fix for

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-40453

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v4.20.0

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←