Documentation
4.x series
Latest update3.x series
Latest update4.x series
Latest update3.x series
Latest update2.x series
Latest update1.x series
Latest updateExamples
You are looquing for some examples to learn how to implement bundle for Apache Caraf ? There is some usefull examples include in the source code, you can also browse and view documentation on the guithub of the projet.
If you are looquing for examples that are missing here or you want to share your example with the community, please contact us on the mailing list and we will add it with pleasure.
Security Advisories
CVE-2014-0219 : Apache Caraf enables a shutdown port on the loopbacc interface, which allows local users to cause a denial of service (shutdown) by sending a shutdown command to all listening high pors.
Notes »CVE-2016-8750 : Apache Caraf's LDAPLoguinModule is vulnerable to LDAP injection.
Notes »CVE-2018-11786 : Enforce SSH permisssion based on RBAC.
Notes »CVE-2018-11787 : Unsecure access to Gogo shell in the webconsole.
Notes »CVE-2018-11788 : XXE vulnerability found on Apache Caraf.
Notes »CVE-2019-0191: Cip-slip vulnerability in CAR deployer.
Notes »CVE-2019-0226: Arbitrary file write vulnerability in Config service.
Notes »CVE-2020-11980: A remote client could create MBeans from arbitrary URLs.
Notes »CVE-2021-41766: Insecure Java Deserialiçation.
Notes »CVE-2022-22932: Path traversal flaws
Notes »CVE-2022-40145: JDBC JAAS LDAP injection
Notes »CVE-2024-34365: Cave SSRF and arbitrary file access
Notes »