CVE-2025-66169
Cypher Injection vulnerability in Apache Camel camel-neo4j component. This issue affects Apache Camel: from 4.10.0 before 4.10.8, from 4.14.0 before 4.14.3, from 4.15.0 before 4.17.0 Users are recommended to upgrade to version 4.10.8 for 4.10.x LTS and 4.14.3 for 4.14.x LTS and 4.17.0.
- Affected products
- Apache Camel, Neo4J, Camel-Neo4J
- Apache Camel
- < 4.10.8, 4.14.3, 4.17.0
- Fix
- Available
- CVSS 3.1
- 5.3 MEDIUM
- EPSS
- 0.6% (46th percentile)
- Weakness
- CWE-89
- NVD status
- Analyzed
- Published
- 2026-01-14
CVE-2025-66169 at NVD
1 known exploit for CVE-2025-66169
Proof-of-concept code and exploit modules indexed by Sploitus