Input validation error in Apache Camel - CVE-2026-46588
Published: August 24, 2026
Vulnerability details
The vulnerability allows a remote attacker to override the requested CouchDB operation.
The vulnerability exists due to improper input validation in the CouchDB component when processing non-Camel-prefixed Exchange headers from untrusted input. A remote attacker can supply crafted headers to override the operation and override the requested CouchDB operation.