THREATOPS
THREAT OPSThreat News › CVE-2026-80352: Apache Camel K: Camel K Master trait serviceAccountName YAML injection lets CR author apply arbitrary objects

CVE-2026-80352: Apache Camel K: Camel K Master trait serviceAccountName YAML injection lets CR author apply arbitrary objects

medoss_secPublished 2026-09-10

<p>Posted by Pasquale Congiusti on Sep 10</p>Severity: critical <br /> <br /> Affected versions:<br /> <br /> - Apache Camel K (apache/camel-k) 2.0.0 before 2.9.3<br /> - Apache Camel K (apache/camel-k) 2.10.1 before 2.10.2<br /> <br /> Description:<br /> <br /> Improper Control of Generation of Code (&apos;Code Injection&apos;) vulnerability in Apache Camel K.<br /> <br /> A YAML injection vulner

Indicators of compromise

Original source: https://seclists.org/oss-sec/2026/q3/708