pkg:Maven/org.apache.activemq:activemq-broker

9 total CVEsCRITICAL1HIGH4MEDIUM2

✅ Check your installed version

All known vulnerabilities

  • HIGH8.8CVE-2026-34197⚠ KEVApache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans
    from 0, < 5.19.5
  • CRITICAL9.8CVE-2014-3600Improper Restriction of XML External Entity Reference in Apache ActiveMQ
    >= 5.0.0, < 5.10.1
  • HIGH8.8CVE-2026-40466Apache ActiveMQ Vulnerable to Improper Input Validation and Code Injection
    from 0, < 5.19.6
  • HIGH8.8CVE-2026-41044Apache ActiveMQ Vulnerable to Code Injection
    from 0, < 5.19.6
  • HIGH7.5CVE-2026-39304Apache ActiveMQ: Denial of Service via Out of Memory vulnerability
    from 0, < 5.19.4
  • MEDIUM6.5CVE-2026-41043Apache ActiveMQ Vulnerable to Cross-site Scripting
    from 0, < 5.19.6
  • MEDIUM4.3CVE-2026-33227Apache ActiveMQ: Improper validation and restriction of a classpath path name
    from 0, < 5.19.3
  • CVE-2015-6524Improper Input Validation in Apache ActiveMQ
    >= 5.0.0, < 5.10.2
  • CVE-2014-3612Improper Authentication in Apache WSS4J
    >= 5.0.0, < 5.10.1