Package impact
Maven / org.apache.activemq:activemq-broker
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2014-3600 | critical | 9.8 | 9.8 | 9y ago | Improper Restriction of XML External Entity Reference in Apache ActiveMQ | |
| CVE-2026-40466 | high | — | 8.0 | 1mo ago | Apache ActiveMQ Vulnerable to Improper Input Validation and Code Injection | |
| CVE-2026-41044 | high | — | 8.0 | 1mo ago | Apache ActiveMQ Vulnerable to Code Injection | |
| CVE-2026-39304 | high | 7.5 | 7.5 | 2mo ago | Apache ActiveMQ: Denial of Service via Out of Memory vulnerability | |
| CVE-2014-3612 | high | — | 7.5 | 11y ago | Improper Authentication in Apache WSS4J | |
| CVE-2026-34197 | unknown | — | 1.5 | 2mo ago | Authenticated Apache ActiveMQ Broker and Apache ActiveMQ users could perform RCE via Jolokia MBeans | |
| CVE-2026-33227 | unknown | — | — | 2mo ago | Apache ActiveMQ: Improper validation and restriction of a classpath path name |