<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 14:41:27 +0000</lastBuildDate>
    <item>
      <title>cnvd-2021-07547</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-07547</link>
      <description>cnvd-2021-07547</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-07547</guid>
    </item>
    <item>
      <title>EUVD-2026-215954</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-215954</link>
      <description>EUVD-2026-215954</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-215954</guid>
    </item>
    <item>
      <title>fkie_cve-2021-26118</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-26118</link>
      <description>&lt;p&gt;While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire protocol head of Apache ActiveMQ Artemis 2.15.0 bypassed policy based access control for the entire session. Production of advisory messages was not subject to access control in error.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire protocol head of Apache ActiveMQ Artemis 2.15.0 bypassed policy based access control for the entire session. Production of advisory messages was not subject to access control in error.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-26118</guid>
    </item>
    <item>
      <title>GHSA-q7fr-vqhq-v5xr — Apache ActiveMQ Artemis vulnerable to Improper Access Control</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q7fr-vqhq-v5xr</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.activemq:artemis-openwire-protocol&lt;/p&gt;
&lt;p&gt;While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire protocol head of Apache ActiveMQ Artemis 2.15.0 bypassed policy based access control for the entire session. Production of advisory messages was not subject to access control in error.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.activemq:artemis-openwire-protocol&lt;/p&gt;
&lt;p&gt;While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire protocol head of Apache ActiveMQ Artemis 2.15.0 bypassed policy based access control for the entire session. Production of advisory messages was not subject to access control in error.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q7fr-vqhq-v5xr</guid>
    </item>
    <item>
      <title>gsd-2021-26118</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-26118</link>
      <description>gsd-2021-26118</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-26118</guid>
    </item>
    <item>
      <title>RHSA-2020:5365 — Red Hat Security Advisory: Red Hat AMQ Broker 7.8 release and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:5365</link>
      <description>&lt;p&gt;Console: HTTPOnly and Secure attributes not set on cookies in Red Hat AMQ hawtio: server side request forgery via initial /proxy/ substring of a URI activemq: remote XSS in web console diagram plugin jetty: local temporary directory hijacking vulnerability activemq: LDAP authentication bypass with anonymous bind 7: OpenWire can create destinations with an unpriviledged user&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Console: HTTPOnly and Secure attributes not set on cookies in Red Hat AMQ hawtio: server side request forgery via initial /proxy/ substring of a URI activemq: remote XSS in web console diagram plugin jetty: local temporary directory hijacking vulnerability activemq: LDAP authentication bypass with anonymous bind 7: OpenWire can create destinations with an unpriviledged user&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:5365</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-26118</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-26118</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: activemq, Ubuntu:Pro:18.04:LTS: activemq, Ubuntu:Pro:20.04:LTS: activemq, Ubuntu:Pro:22.04:LTS: activemq&lt;/p&gt;
&lt;p&gt;While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire protocol head of Apache ActiveMQ Artemis 2.15.0 bypassed policy based access control for the entire session. Production of advisory messages was not subject to access control in error.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: activemq, Ubuntu:Pro:18.04:LTS: activemq, Ubuntu:Pro:20.04:LTS: activemq, Ubuntu:Pro:22.04:LTS: activemq&lt;/p&gt;
&lt;p&gt;While investigating ARTEMIS-2964 it was found that the creation of advisory messages in the OpenWire protocol head of Apache ActiveMQ Artemis 2.15.0 bypassed policy based access control for the entire session. Production of advisory messages was not subject to access control in error.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-26118</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2969 — Apache ActiveMQ: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2969</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Apache ActiveMQ ausnutzen, um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Apache ActiveMQ ausnutzen, um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2969</guid>
    </item>
  </channel>
</rss>
