#ActiveMQ
🚨 EUVD-2026-88242
📊 8.2/10

📝 Apache ActiveMQ Artemis before 2.34.0 contains an unsafe reflection vulnerability in FederationStreamConnectMessage.getFederationPolicy(). The method calls Class.fo...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-88242

#cybersecurity #infosec #cve #euvd
September 28, 2026 at 2:01 PM
QueueExplorer Professional 5.0.95
Description: Explorer-like management for queues. Works with multiple queuing systems. QueueExplorer supports multiple systems from the same installation, without need for additional licensing: MSMQ, Azure Service Bus, RabbitMQ, and ActiveMQ. With QueueExplorer you can do much more than with built-in management console - copy, move or delete messages, save and load, stress test, view and edit full message bodies (with support for XML, JSON, .Net objects...), and much more. QueueExplorer is a fast, native Windows application. The indispensable tool for working with queues and messages:understand and manage your systemfigure out what went wrongfix it Find out all about your messagesWith QueueExplorer you can dig into your queues and see which message went where, whether they were correctly formatted, with correct headers and settings, etc. Multiple viewers are at your disposal: JSON, XML, WCF, Hex, text with different encodings... Develop and test producers and consumers separatelyWith QueueExplorer you can test individual pieces of your solution, or even simulate third party messages going in or out. You can create and edit test messages, send one by one or bunch of them together. Test performance and load handling of your appSend thousands of messages for performance testing to see how system handles that load. Troubleshoot, fix, and resend problematic messagesIf something is wrong, QueueExplorer is the fastest and easiest way to investigate and fix incorrect, poison, or failed/deadletter messages. See status of your system at glanceCheck if some of queues are growing too large, if there are messages in deadletter queues, etc. With autorefresh functionality see how entire system works in near real time. Filter and sort messages to quickly find important dataQueueExplorer allows you to quickly find messages you're interested in. Professional edition allows you to even extract your business data from within messages using XPath, JSON, or Regex, and to immediately see e.g. invoice totals, etc. Backup and restore messagesBackup messages to files, or move/copy them to another queue. Copy, compare and sync queues, topics and other schema (metadata) objectsThis can be used to migrate queues (and other objects) to another server, e.g. to propagate from development to production. Or just to compare and see which changes were made. Or to backup schema before changes are made. You can also duplicate queues with all their settings on the same server (Professional). Release Name: QueueExplorer Professional 5.0.95Size: 36.2 MBLinks: HOMEPAGE – NFO – Torrent Search Download: UPLOADY – RAPiDGATOR
rlsbb.ru
September 22, 2026 at 1:35 PM
📌 CVE-2026-67593 - A remote attacker can craft an Openwire RemoveSubscriptionInfo command to cause the deletion of a queue on the Artemis broker before the connection au... https://www.cyberhub.blog/cves/CVE-2026-67593
CVE-2026-67593
A remote attacker can craft an Openwire RemoveSubscriptionInfo command to cause the deletion of a queue on the Artemis broker before the connection authentication and authorization stage or at any time thereafter. This issue affects Apache Artemis: from 2.50.0 through 2.56.0; Apache ActiveMQ Art
www.cyberhub.blog
September 17, 2026 at 10:07 AM
📌 CVE-2026-49364 - An unauthenticated network-adjacent attacker can leverage discovery to capture cluster administrative credentials during the initial cluster connectio... https://www.cyberhub.blog/cves/CVE-2026-49364
CVE-2026-49364
An unauthenticated network-adjacent attacker can leverage discovery to capture cluster administrative credentials during the initial cluster connection handshake. This issue affects Apache Artemis: from 2.50.0 through 2.56.0; Apache ActiveMQ Artemis: from 1.0.0 through 2.44.0. Users are recommen
www.cyberhub.blog
September 17, 2026 at 9:37 AM
📌 CVE-2026-57967 - An unauthenticated remote attacker can craft a CORE protocol SESSION_REATTACH packet to steal an existing session and assume ongoing execution of the ... https://www.cyberhub.blog/cves/CVE-2026-57967
CVE-2026-57967
An unauthenticated remote attacker can craft a CORE protocol SESSION_REATTACH packet to steal an existing session and assume ongoing execution of the previously authenticated session. This issue affects Apache Artemis: from 2.50.0 through 2.56.0; Apache ActiveMQ Artemis: from 1.0.0 through 2.44.0
www.cyberhub.blog
September 17, 2026 at 5:37 AM
🟠 HOCH · Apache ActiveMQ Artemis: mehrere Schwachstellen

CERT-Bund (BSI)
Apache ActiveMQ Artemis: mehrere Schwachstellen
CERT-Bund (BSI) meldet mehrere Schwachstellen in Apache ActiveMQ Artemis mit dem Schweregrad hoch. Die vollständige Beschreibung mit betroffenen Versionen und empfohlenen Maßnahmen steht beim CERT-Bu…
www.neonotu.com
September 10, 2026 at 5:08 PM
CVE-2026-57967 - apache artemis
The messaging servers can be tricked by an unauthenticated attacker into taking over an already logged‑in session, letting the attacker act as the legitimate…

Too many irrelevant or confusing CVEs? Use stackflag.com

#apacheartemis #apachefoundation #CVE #infosec
CVE-2026-57967: Apache Artemis and ActiveMQ Artemis allow session hijacking
The messaging servers can be tricked by an unauthenticated attacker into taking over an already logged‑in session, letting the attacker act as the.
stackflag.com
September 10, 2026 at 4:40 PM
Apache ActiveMQ v6.3.2 is now available for download: buff.ly/TXq6GX9

Release notes: buff.ly/8g7PFFS
September 8, 2026 at 10:01 PM
The latest update for #meshIQ includes "Why Most Enterprise #AI Agent Programs Overspend, and What Actually Fixes It" and "Event-Driven Architecture Patterns: The ActiveMQ Practitioner's Guide".

#Monitoring #Middleware https://opsmtrs.com/3JNBKxa
meshIQ
Observability Platform for Messaging, Event Processing, and Streaming Across Hybrid Cloud (MESH).
opsmtrs.com
September 1, 2026 at 4:11 AM
QueueExplorer Professional 5.0.91
Description: Explorer-like management for queues. Works with multiple queuing systems. QueueExplorer supports multiple systems from the same installation, without need for additional licensing: MSMQ, Azure Service Bus, RabbitMQ, and ActiveMQ. With QueueExplorer you can do much more than with built-in management console - copy, move or delete messages, save and load, stress test, view and edit full message bodies (with support for XML, JSON, .Net objects...), and much more. QueueExplorer is a fast, native Windows application. The indispensable tool for working with queues and messages:understand and manage your systemfigure out what went wrongfix it Find out all about your messagesWith QueueExplorer you can dig into your queues and see which message went where, whether they were correctly formatted, with correct headers and settings, etc. Multiple viewers are at your disposal: JSON, XML, WCF, Hex, text with different encodings... Develop and test producers and consumers separatelyWith QueueExplorer you can test individual pieces of your solution, or even simulate third party messages going in or out. You can create and edit test messages, send one by one or bunch of them together. Test performance and load handling of your appSend thousands of messages for performance testing to see how system handles that load. Troubleshoot, fix, and resend problematic messagesIf something is wrong, QueueExplorer is the fastest and easiest way to investigate and fix incorrect, poison, or failed/deadletter messages. See status of your system at glanceCheck if some of queues are growing too large, if there are messages in deadletter queues, etc. With autorefresh functionality see how entire system works in near real time. Filter and sort messages to quickly find important dataQueueExplorer allows you to quickly find messages you're interested in. Professional edition allows you to even extract your business data from within messages using XPath, JSON, or Regex, and to immediately see e.g. invoice totals, etc. Backup and restore messagesBackup messages to files, or move/copy them to another queue. Copy, compare and sync queues, topics and other schema (metadata) objectsThis can be used to migrate queues (and other objects) to another server, e.g. to propagate from development to production. Or just to compare and see which changes were made. Or to backup schema before changes are made. You can also duplicate queues with all their settings on the same server (Professional). Release Name: QueueExplorer Professional 5.0.91Size: 36.2 MBLinks: HOMEPAGE – NFO – Torrent Search Download: RAPiDGATOR
rlsbb.ru
August 28, 2026 at 7:41 PM
Quietly one of the better self-hosted queuings I've found.

ActiveMQ is a Apache-2.0, Java queuing. Java message broker.

→ Full source available on the repo link.
→ Released under Apache-2.0.

Amazon SQS: paid. ActiveMQ: $0 and on your own ha...

#opensource #selfhosted #queuing
August 21, 2026 at 5:35 PM
Nobody runs just one message broker anymore, and that's where observability gets hard.
meshIQ brings IBM MQ, Kafka, RabbitMQ, ActiveMQ & more into a single pane of glass. Glad to have them joining MQ Summit 2026 as a Network Party Sponsor!

21-22 Oct, Haarlem NL, mqsummit.com/#sponsors
August 18, 2026 at 12:01 PM
Apache ActiveMQ 6.3.0, 6.2.8, and 5.19.9 are available for download: buff.ly/G3TGK2V
August 17, 2026 at 7:01 PM
Nobody runs just one message broker anymore, and that's where observability gets hard.
meshIQ brings IBM MQ, Kafka, RabbitMQ, ActiveMQ & more into a single pane of glass. Glad to have them joining MQ Summit 2026 as a Network Party Sponsor!

21-22 Oct, Haarlem NL, mqsummit.com/#sponsors
August 13, 2026 at 10:01 AM
Also this month:

Sniper added 4 exploits: wp2shell (WP Core SQLi), Adobe ColdFusion RCE, Apache ActiveMQ RCE, and last month's Joomla JCE RCE, now exploitable end to end.

57 new Network Scanner detections, plus a CISA KEV-only scan filter.
August 6, 2026 at 12:12 PM
The latest update for #meshIQ includes "Your #AI Agents Can Take Action Now. Can You Prove They Should Have?" and "ActiveMQ Upgrade & #Patching Strategy: The Expert Guide".

#Monitoring #Middleware https://opsmtrs.com/3JNBKxa
meshIQ
Observability Platform for Messaging, Event Processing, and Streaming Across Hybrid Cloud (MESH).
opsmtrs.com
July 30, 2026 at 1:48 AM
🟠 CVE-2026-59878 - High (7.5)

Improper Input Validation vulnerability in Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ...

https://www.thehackerwire.com/vulnerability/CVE-2026-59878/

#infosec #cybersecurity #CVE #vulnerability #security #patchstack
July 28, 2026 at 4:00 PM
CVE-2026-59878 - Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ All: AMQP NIO negative frame size validation bypass leading to DoS
CVE ID : CVE-2026-59878

Published : July 28, 2026, 2:16 p.m. | 23 minutes ago

Description : Improper Input Validation vulnerability ...
CVE-2026-59878 - Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ All: AMQP NIO negative frame size validation bypass leading to DoS
Improper Input Validation vulnerability in Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ All. A remote unauthenticated peer that can reach an exposed AMQP NIO connector can trigger denial-of-service behavior by sending a frame size value. This cause the NIO threads to die and if done rapidly enough can lead to …
cvefeed.io
July 28, 2026 at 3:47 PM
🚨 EUVD-2026-49848
📊 7.5/10
🏢 Apache Software Foundation

📝 Improper Input Validation vulnerability in Apache ActiveMQ AMQP, Apache ActiveMQ, Apache ActiveMQ All.

A remote unauthenticated peer t...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-49848

#cybersecurity #infosec #cve #euvd
July 28, 2026 at 3:01 PM
🚨 EUVD-2026-49847
📊 6.5/10
🏢 Apache Software Foundation

📝 Improper Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ.

An authenticated low-privilege ...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-49847

#cybersecurity #infosec #cve #euvd
July 28, 2026 at 3:01 PM
CVE-2026-61487 - Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authorization bypass via temporary composite destinations
CVE ID : CVE-2026-61487

Published : July 28, 2026, 2:16 p.m. | 23 minutes ago

Description : Improper Authorization vulnerability in Ap...
CVE-2026-61487 - Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authorization bypass via temporary composite destinations
Improper Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. An authenticated low-privilege user can bypass a per-destination write ACL by sending to an ActiveMQ temporary composite destination whose physical name is a comma-separated composite of real queues. This allows publishing messages to any of the destinations in …
cvefeed.io
July 28, 2026 at 2:58 PM