Where
AND
-Infinity
0

Apache ActiveMQ BrokerApache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All: Pre-authentication OpenWire DoS following fix for CVE-2026-49270

Risk 43
Severity
7.5
First published (updated )

Apache ActiveMQ BrokerApache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Temporary destination ownership takeover

Risk 46
Severity
7.5
First published (updated )

Apache ActiveMQApache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Client, Apache ActiveMQ Broker: Unbounded memory allocation in OpenWire property unmarshalling

Risk 46
Severity
7.5
First published (updated )

Apache ActiveMQApache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp: Unbounded header buffer in STOMP NIO codec

Risk 46
Severity
7.5
First published (updated )

Apache ActiveMQApache ActiveMQ Client, Apache ActiveMQ, Apache ActiveMQ All: Pre-authentication OpenWire memory-allocation DoS during wire format negotiation

Risk 46
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache ActiveMQApache ActiveMQ: Authenticated web users retain admin access by default in the Web Console

Risk 63
Severity
8.1
First published (updated )

Apache ActiveMQ BrokerApache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All: LdapNetworkConnector instantiates denied transports and a remote-properties broker

Risk 46
Severity
7.5
First published (updated )

Apache ActiveMQApache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Stomp: STOMP negative content-length enables denial of service

Risk 46
Severity
7.5
First published (updated )

Apache ActiveMQApache ActiveMQ: Authenticated low-privilege Web users retain Jolokia broker-management capability by default

Risk 83
Severity
8.8
First published (updated )

Apache ActiveMQ BrokerApache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Jolokia `addNetworkConnector` Discovery Wrapper Bypass

Risk 83
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache ActiveMQ BrokerApache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Remote Code Execution via Jolokia addNetworkConnector

Risk 63
Severity
8.1
First published (updated )

Apache ActiveMQ BrokerInput Validation, Code Injection

Risk 33
Severity
7
First published (updated )

Apache ActiveMQInput Validation, Code Injection

Risk 33
Severity
7
First published (updated )

Apache ActiveMQApache ActiveMQ, Apache ActiveMQ Broker, Apache ActiveMQ All: Authenticated user can perform RCE via DestinationView MBean exposed by Jolokia

Risk 84
Severity
8.8
First published (updated )

Apache ActiveMQ BrokerApache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Possible bypass of CVE-2026-34197 via HTTP discovery second-stage URI

Risk 84
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache ActiveMQ ClientDenial of Service via Out of Memory vulnerability in Apache ActiveMQ Client, Apache ActiveMQ Broker,…

Risk 33
Severity
7
First published (updated )

maven/org.apache.activemq:apache-activemqApache ActiveMQ Client, Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Incorrect handling of TLSv1.3 KeyUpdate can be exploited to cause DoS via OOM

Risk 46
Severity
7.5
First published (updated )

Apache ActiveMQ BrokerInput Validation, Code Injection

Risk 33
Severity
7
First published (updated )

Apache ActiveMQApache ActiveMQ Improper Input Validation Vulnerability

Risk 95
Severity
8.8
First published (updated )

Apache ActiveMQApache ActiveMQ, Apache ActiveMQ All Module, Apache ActiveMQ MQTT Module: MQTT control packet remaining length field is not properly validated

Risk 84
Severity
8.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

maven/org.apache.activemq:apache-activemqApache ActiveMQ: Jolokia and REST API were not secured with default configuration

Risk 83
Severity
8.8
First published (updated )

redhat/activemqApache ActiveMQ: Insufficient API restrictions on Jolokia allow authenticated users to perform RCE

Risk 85
Severity
8.8
First published (updated )

Oracle Communications Unified Inventory ManagementXStream can cause a Denial of Service

Risk 45
Severity
7.5
First published (updated )

Oracle Communications Unified Inventory ManagementA Server-Side Forgery Request can be activated unmarshalling with XStream to access data streams from an arbitrary URL referencing a resource in an intranet or the local host

Risk 51
Severity
8.6
First published (updated )

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has sufficient rights

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Oracle Communications Unified Inventory ManagementXStream is vulnerable to an attack using Regular Expression for a Denial of Service (ReDos)

Risk 46
Severity
7.8
First published (updated )

maven/org.apache.activemq:activemq-parentActiveMQ: LDAP-Authentication does not verify passwords on servers with anonymous bind

Risk 79
Severity
8.1
First published (updated )

Oracle Communications Diameter Signaling RouterInput Validation, Code Injection

Risk 46
Severity
7.5
First published (updated )

ORACLE FLEXCUBE Private BankingLast updated 24 July 2024

Risk 59
Severity
7.4
First published (updated )

Apache ActiveMQInput Validation

Risk 67
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203