Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 Improper Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. An authenticated low-privilege user can bypass a per-destination write ACL by sending to an ActiveMQ temporary composite destination whose physical name is a comma-separated composite of real queues. This allows publishing messages to any of the destinations in the list without proper write ACL permissions because the authorization check is bypassed due to the composite destination being marked as temporary. This issue affects Apache ActiveMQ Broker: before 5.19.9, from 6.0.0 before 6.2.8; Apache ActiveMQ All: before 5.19.9, from 6.0.0 before 6.2.8; Apache ActiveMQ: before 5.19.9, from 6.0.0 before 6.2.8. Users are recommended to upgrade to version 5.19.9, 6.2.8 or 6.3.0, which fixes the issue. Join the discussion | CVE Database V5 | 07/28/2026, 13:32:40 UTC Added: 07/28/2026, 13:52:41 UTC |
0 Improper Input Validation vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All. An attacker that has access to publish or modify entries in LDAP that match the configured searchBase and searchFilter can instantiate denied transports inside the broker JVM. This can be used to fetch an attacker URL and spawn a second BrokerService inside the same JVM. This issue affects Apache ActiveMQ Broker: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ All: before 5.19.8, from 6.0.0 before 6.2.7. Users are recommended to upgrade to version 6.2.7 or 5.19.8, which fixes the issue. Join the discussion | CVE Database V5 | 06/30/2026, 09:55:29 UTC Added: 06/30/2026, 10:51:39 UTC |
0 Denial of Service via Out of Memory vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ, Apache ActiveMQ All. Following the fix for CVE-2026-49270 an unauthenticated attacker can now cause broker OOM by sending an repeated BrokerInfo commands without sending a ConnectionInfo, until the broker will crash with OOM. This issue affects Apache ActiveMQ Broker: from 5.19.7 before 5.19.8, from 6.2.6 before 6.2.7; Apache ActiveMQ: from 5.19.7 before 5.19.8, from 6.2.6 before 6.2.7; Apache ActiveMQ All: from 5.19.7 before 5.19.8, from 6.2.6 before 6.2.7. Users are recommended to upgrade to version 6.2.7, which fixes the issue. Join the discussion | CVE Database V5 | 06/30/2026, 09:51:57 UTC Added: 06/30/2026, 10:51:39 UTC |
0 Memory Allocation with Excessive Size Value vulnerability in Apache ActiveMQ, Apache ActiveMQ All, Apache ActiveMQ Client, Apache ActiveMQ Broker. An authenticated user can cause a broker DoS by sending a crafted OpenWire Message with a large encoded size value for the map. OpenWire message property maps are unmarshaled without size validation which can trigger OOM and crash the broker. This issue affects Apache ActiveMQ: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ All: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ Client: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ Broker: before 5.19.8, from 6.0.0 before 6.2.7. Users are recommended to upgrade to version 6.2.7 or 5.19.8, which fixes the issue. Join the discussion | CVE Database V5 | 06/30/2026, 09:49:17 UTC Added: 06/30/2026, 10:51:39 UTC |
0 Missing Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. Apache ActiveMQ Classic temporary destinations are expected to be isolated to the connection that created them. The isolation can be broken as this is only checked in the client, allowing a different connection to consume from another connection's temporary destination. This issue affects Apache ActiveMQ Broker: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ All: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ: before 5.19.8, from 6.0.0 before 6.2.7. Users are recommended to upgrade to version 6.2.7, which fixes the issue. Join the discussion | CVE Database V5 | 06/30/2026, 09:48:28 UTC Added: 06/30/2026, 10:51:39 UTC |
0 CVE-2026-42588 is a high-severity vulnerability in Apache ActiveMQ Broker that allows authenticated attackers to execute arbitrary code on the broker's JVM. The flaw is due to improper input validation in the Jolokia JMX-HTTP bridge, enabling exec operations on all ActiveMQ MBeans, including BrokerService.addNetworkConnector. Attackers can exploit this by crafting a discovery URI with a malicious brokerConfig parameter, triggering loading of a malicious Spring XML application context and resulting in code execution via bean factory methods such as Runtime.exec(). This affects Apache ActiveMQ Broker versions before 5.19.7 and version 6.0.0 exactly. No official patch or remediation level is currently provided. Join the discussion | CVE Database V5 | 06/01/2026, 07:23:17 UTC Added: 06/01/2026, 09:18:45 UTC |
0 CVE-2026-45505 is a high-severity vulnerability in Apache ActiveMQ Broker involving improper input validation. Authenticated attackers can exploit the Jolokia JMX-HTTP bridge by passing crafted discovery URIs that load remote Spring XML application contexts, leading to arbitrary code execution on the broker's JVM. This affects Apache ActiveMQ Broker versions before 5.19.7 and from 6.0.0 up to but not including 6.2.6. Users are advised to upgrade to fixed versions to mitigate this risk. Join the discussion | CVE Database V5 | 06/01/2026, 07:22:32 UTC Added: 06/01/2026, 09:18:45 UTC |
0 Apache ActiveMQ Broker versions before 5.19.7 and from 6.0.0 before 6.2.6 have an improper authorization vulnerability. This flaw allows authenticated users with certain permissions to remove existing destinations without complete authorization checks. The issue is fixed in versions 5.19.7 and 6.2.6. Join the discussion | CVE Database V5 | 06/01/2026, 07:21:13 UTC Added: 06/01/2026, 09:18:45 UTC |
0 Apache ActiveMQ Broker versions before 5.19.7 and from 6.0.0 before 6.2.6 have a vulnerability that allows unauthenticated attackers to obtain sensitive metadata about durable topic subscriptions. This includes client identifiers, subscription names, topic destinations, and JMS selector expressions. The issue arises when brokers are configured with a network connector with syncDurableSubs set to true and respond to BrokerInfo commands without verifying authentication. Upgrading to versions 5.19.7 or 6.2.6 resolves this vulnerability. Join the discussion | CVE Database V5 | 06/01/2026, 07:19:34 UTC Added: 06/01/2026, 09:18:49 UTC |
0 Improper Input Validation, Improper Control of Generation of Code ('Code Injection') vulnerability in Apache ActiveMQ, Apache ActiveMQ Broker, Apache ActiveMQ All. An authenticated attacker can use the admin web console page to construct a malicious broker name that bypasses name validation to include an xbean binding that can be later used by a VM transport to load a remote Spring XML application. The attacker can then use the DestinationView mbean to send a message to trigger a VM transport creation that will reference this malicious broker name which can lead to loading the malicious Spring XML context file. Because Spring's ResourceXmlApplicationContext instantiates all singleton beans before the BrokerService validates the configuration, arbitrary code execution occurs on the broker's JVM through bean factory methods such as Runtime.exec(). This issue affects Apache ActiveMQ: before 5.19.6, from 6.0.0 before 6.2.5; Apache ActiveMQ Broker: before 5.19.6, from 6.0.0 before 6.2.5; Apache ActiveMQ All: before 5.19.6, from 6.0.0 before 6.2.5. Users are recommended to upgrade to version 6.2.5 or 5.19.6, which fixes the issue. Join the discussion | CVE Database V5 | 04/24/2026, 10:16:53 UTC Added: 04/24/2026, 10:36:03 UTC |
Showing 1 to 10 of 14 results