Apache Activemq Artemis vulnerabilities
14 known vulnerabilities affecting apache/activemq_artemis.
Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH6MEDIUM5LOW2
Vulnerabilities
Page 1 of 1
CVE-2026-32642LOWCVSS 2.3≥ 2.0.0, ≤ 2.44.02026-03-24
CVE-2026-32642 [LOW] CWE-863 CVE-2026-32642: Incorrect Authorization (CWE-863) vulnerability in Apache Artemis, Apache ActiveMQ Artemis exists wh
Incorrect Authorization (CWE-863) vulnerability in Apache Artemis, Apache ActiveMQ Artemis exists when an application using the OpenWire protocol attempts to create a non-durable JMS topic subscription on an address that doesn't exist with an authenticated user which has the "createDurableQueue" permission but does not have the "createAddress" permissi
nvd
CVE-2026-27446CRITICALCVSS 9.3≥ 2.11.0, ≤ 2.44.02026-03-04
CVE-2026-27446 [CRITICAL] CWE-306 CVE-2026-27446: Missing Authentication for Critical Function (CWE-306) vulnerability in Apache Artemis, Apache Activ
Missing Authentication for Critical Function (CWE-306) vulnerability in Apache Artemis, Apache ActiveMQ Artemis. An unauthenticated remote attacker can use the Core protocol to force a target broker to establish an outbound Core federation connection to an attacker-controlled rogue broker. This could potentially result in message injection into an
nvd
CVE-2025-27391MEDIUMCVSS 6.8≥ 1.5.1, < 2.40.02025-04-09
CVE-2025-27391 [MEDIUM] CWE-532 CVE-2025-27391: Insertion of Sensitive Information into Log File vulnerability in Apache ActiveMQ Artemis. All the v
Insertion of Sensitive Information into Log File vulnerability in Apache ActiveMQ Artemis. All the values of the broker properties are logged when the org.apache.activemq.artemis.core.config.impl.ConfigurationImpl logger has the debug level enabled.
This issue affects Apache ActiveMQ Artemis: from 1.5.1 before 2.40.0. It can be mitigated by restric
nvd
CVE-2025-27427LOWCVSS 2.3≥ 2.0.0, < 2.40.02025-04-01
CVE-2025-27427 [LOW] CWE-863 CVE-2025-27427: A vulnerability exists in Apache ActiveMQ Artemis whereby a user with the createDurableQueue or crea
A vulnerability exists in Apache ActiveMQ Artemis whereby a user with the createDurableQueue or createNonDurableQueue permission on an address can augment the routing-type supported by that address even if said user doesn't have the createAddress permission for that particular address. When combined with the send permission and automatic queue creation
nvd
CVE-2023-50780HIGHCVSS 8.8fixed in 2.29.02024-10-14
CVE-2023-50780 [HIGH] CWE-285 CVE-2023-50780: Apache ActiveMQ Artemis allows access to diagnostic information and controls through MBeans, which a
Apache ActiveMQ Artemis allows access to diagnostic information and controls through MBeans, which are also exposed through the authenticated Jolokia endpoint. Before version 2.29.0, this also included the Log4J2 MBean. This MBean is not meant for exposure to non-administrative users. This could eventually allow an authenticated attacker to write arbi
nvd
CVE-2021-4040MEDIUMCVSS 5.3fixed in 2.19.12022-08-24
CVE-2021-4040 [MEDIUM] CWE-400 CVE-2021-4040: A flaw was found in AMQ Broker. This issue can cause a partial interruption to the availability of A
A flaw was found in AMQ Broker. This issue can cause a partial interruption to the availability of AMQ Broker via an Out of memory (OOM) condition. This flaw allows an attacker to partially disrupt availability to the broker through a sustained attack of maliciously crafted messages. The highest threat from this vulnerability is system availability.
nvd
CVE-2022-35278MEDIUMCVSS 6.1fixed in 2.24.02022-08-23
CVE-2022-35278 [MEDIUM] CWE-80 CVE-2022-35278: In Apache ActiveMQ Artemis prior to 2.24.0, an attacker could show malicious content and/or redirect
In Apache ActiveMQ Artemis prior to 2.24.0, an attacker could show malicious content and/or redirect users to a malicious URL in the web console by using HTML in the name of an address or queue.
nvd
CVE-2022-23913HIGHCVSS 7.5fixed in 2.19.12022-02-04
CVE-2022-23913 [HIGH] CWE-770 CVE-2022-23913: In Apache ActiveMQ Artemis prior to 2.20.0 or 2.19.1, an attacker could partially disrupt availabili
In Apache ActiveMQ Artemis prior to 2.20.0 or 2.19.1, an attacker could partially disrupt availability (DoS) through uncontrolled resource consumption of memory.
nvd
CVE-2021-26117HIGHCVSS 7.5fixed in 2.16.02021-01-27
CVE-2021-26117 [HIGH] CWE-287 CVE-2021-26117: The optional ActiveMQ LDAP login module can be configured to use anonymous access to the LDAP server
The optional ActiveMQ LDAP login module can be configured to use anonymous access to the LDAP server. In this case, for Apache ActiveMQ Artemis prior to version 2.16.0 and Apache ActiveMQ prior to versions 5.16.1 and 5.15.14, the anonymous context is used to verify a valid users password in error, resulting in no check on the password.
nvd
CVE-2021-26118HIGHCVSS 7.5v2.15.02021-01-27
CVE-2021-26118 [HIGH] CWE-284 CVE-2021-26118: While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire
While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire protocol head of Apache ActiveMQ Artemis 2.15.0 bypassed policy based access control for the entire session. Production of advisory messages was not subject to access control in error.
nvd
CVE-2020-13932MEDIUMCVSS 6.1≥ 2.5.0, ≤ 2.13.02020-07-20
CVE-2020-13932 [MEDIUM] CWE-79 CVE-2020-13932: In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload
In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.
nvd
CVE-2020-10727MEDIUMCVSS 5.5≥ 2.7.0, ≤ 2.12.02020-06-26
CVE-2020-10727 [MEDIUM] CWE-312 CVE-2020-10727: A flaw was found in ActiveMQ Artemis management API from version 2.7.0 up until 2.12.0, where a user
A flaw was found in ActiveMQ Artemis management API from version 2.7.0 up until 2.12.0, where a user inadvertently stores passwords in plaintext in the Artemis shadow file (etc/artemis-users.properties file) when executing the `resetUsers` operation. A local attacker can use this flaw to read the contents of the Artemis shadow file.
nvd
CVE-2017-12174HIGHCVSS 7.5fixed in 2.4.02018-03-07
CVE-2017-12174 [HIGH] CWE-400 CVE-2017-12174: It was found that when Artemis and HornetQ before 2.4.0 are configured with UDP discovery and JGroup
It was found that when Artemis and HornetQ before 2.4.0 are configured with UDP discovery and JGroups discovery a huge byte array is created when receiving an unexpected multicast message. This may result in a heap memory exhaustion, full GC, or OutOfMemoryError.
nvd
CVE-2016-4978HIGHCVSS 7.2fixed in 1.4.02016-09-27
CVE-2016-4978 [HIGH] CWE-502 CVE-2016-4978: The getObject method of the javax.jms.ObjectMessage class in the (1) JMS Core client, (2) Artemis br
The getObject method of the javax.jms.ObjectMessage class in the (1) JMS Core client, (2) Artemis broker, and (3) Artemis REST component in Apache ActiveMQ Artemis before 1.4.0 might allow remote authenticated users with permission to send messages to the Artemis broker to deserialize arbitrary objects and execute arbitrary code by leveraging gadget cla
nvd