Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%

Apache ActiveMQ — Vulnerabilities & Security Advisories 18

All 18 CVE vulnerabilities found in Apache ActiveMQ, with AI-generated Chinese analysis, references, and POCs.

Vendor: Apache Software Foundation

CVE IDTitleCVSSSeverityPaused
CVE-2026-41044 Apache ActiveMQ, Apache ActiveMQ Broker, Apache ActiveMQ All: Authenticated user can perform RCE via DestinationView MBean exposed by Jolokia CWE-20 7.2AIHighAI2026-04-24
CVE-2026-41043 Apache ActiveMQ, Apache ActiveMQ Web: ActiveMQ Web Console - XSS vulnerability when browsing queues CWE-79 5.4AIMediumAI2026-04-24
CVE-2026-40046 Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ MQTT: Missing fix for CVE-2025-66168: MQTT control packet remaining length field is not properly validated CWE-190 9.8AICriticalAI2026-04-09
CVE-2025-66168 Apache ActiveMQ, Apache ActiveMQ All Module, Apache ActiveMQ MQTT Module: MQTT control packet remaining length field is not properly validated CWE-190 5.4 Medium2026-03-04
CVE-2025-27533 Apache ActiveMQ: Unchecked buffer length can cause excessive memory allocation CWE-789 7.5AIHighAI2025-05-07
CVE-2024-32114 Apache ActiveMQ: Jolokia and REST API were not secured with default configuration CWE-1188 8.5 High2024-05-02
CVE-2022-41678 Apache ActiveMQ: Insufficient API restrictions on Jolokia allow authenticated users to perform RCE CWE-287 8.8 -2023-11-28
CVE-2023-46604 Apache ActiveMQ, Apache ActiveMQ Legacy OpenWire Module: Unbounded deserialization causes ActiveMQ to be vulnerable to a remote code execution (RCE) attack CWE-502 10.0 Critical2023-10-27
CVE-2020-13947 Apache ActiveMQ 跨站脚本漏洞 6.1 -2021-02-08
CVE-2021-26117 ActiveMQ: LDAP-Authentication does not verify passwords on servers with anonymous bind CWE-287 7.5 -2021-01-27
CVE-2020-11998 Apache ActiveMQ 代码注入漏洞 8.1 -2020-09-10
CVE-2020-13920 Apache ActiveMQ effect 授权问题漏洞 5.9 -2020-09-10
CVE-2020-1941 Apache ActiveMQ 跨站脚本漏洞 6.1 -2020-05-14
CVE-2019-0222 Apache ActiveMQ 代码注入漏洞 7.5 -2019-03-28
CVE-2018-8006 Apache ActiveMQ 跨站脚本漏洞 6.1 -2018-10-10
CVE-2018-11775 Apache ActiveMQ Client 信任管理问题漏洞 7.4 -2018-09-10
CVE-2017-15709 ActiveMQ 信息泄露漏洞 5.9 -2018-02-13
CVE-2016-6810 Apache ActiveMQ 跨站脚本漏洞 6.1 -2018-01-10

All 18 known CVE vulnerabilities affecting Apache ActiveMQ with full Chinese analysis, references, and POCs where available.