CVE-2026-88789 - Apache Camel Quarkus: Camel Quarkus: Forced Xalan TransformerFactory drops upstream external-DTD/stylesheet hardening
CVE ID :CVE-2026-88789 Published : Oct. 1, 2026, 10:51 a.m. | 26 minutes ago Description :Improper Restriction of XML External Entity Reference in the XSLT support extension (camel-quarkus-support-xalan) in Apache Camel Quarkus from 3.2.0 before 3.33.3 and from 3.34.0 before 3.40.0 on all...