Finding #85
| Inventory item | apache-test 2.4.37 (software, apache) |
|---|---|
| Title | Apache ActiveMQ: Apache ActiveMQ Deserialization of Untrusted Data Vulnerability |
| Match | keyword / confidence low |
| Status | new |
| First seen | 2026-06-11T07:35:12Z |
| Last updated | 2026-06-11T07:35:12Z |
| Source advisory | Apache ActiveMQ: Apache ActiveMQ Deserialization of Untrusted Data Vulnerability Apache ActiveMQ contains a deserialization of untrusted data vulnerability that may allow a remote attacker with network access to a broker to run shell commands by manipulating serialized class types in the OpenWire protocol to cause the broker to instantiate any class on the classpath. |