QID 981032
QID 981032: Java (maven) Security Update for org.apache.activemq:activemq-web-console (GHSA-hvwm-2624-rp9x)
An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console on the queue.jsp page of Apache ActiveMQ versions 5.0.0 to 5.15.5. The root cause of this issue is improper data filtering of the QueueFilter parameter.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-hvwm-2624-rp9x for updates pertaining to this vulnerability.
Vendor References
- GHSA-hvwm-2624-rp9x -
github.com/advisories/GHSA-hvwm-2624-rp9x
CVEs related to QID 981032
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-hvwm-2624-rp9x | org.apache.activemq:activemq-web-console |
|