Dossier
Apache ActiveMQ Classic
Coverage of Apache ActiveMQ Classic in the Nexus archive.
- Apache ActiveMQ CVE-2026-34197 Added to CISA KEV Amid Active Exploitation
A high-severity vulnerability (CVE-2026-34197) in Apache ActiveMQ Classic is being actively exploited, prompting CISA to add it to its KEV catalog with a CVSS score of 8.8. Federal civilian agencies are required to address the flaw immediately.
- 13-year-old bug in ActiveMQ lets hackers remotely execute commands
A critical remote code execution vulnerability in Apache ActiveMQ Classic, undetected for 13 years, allows hackers to execute arbitrary commands remotely. Security researchers have identified the flaw, raising concerns about potential exploitation of the outdated system.