Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 8

Количество 8

ubuntu логотип

CVE-2026-41043

5 месяцев назад

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache ActiveMQ, Apache ActiveMQ Web. An authenticated attacker can show malicious content when browsing queues in the web console by overriding the content type to be HTML (instead of XML) and by injecting HTML into a JMS selector field. This issue affects Apache ActiveMQ: before 5.19.6, from 6.0.0 before 6.2.5; Apache ActiveMQ Web: before 5.19.6, from 6.0.0 before 6.2.5. Users are recommended to upgrade to version 6.2.5 or 5.19.6, which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-41043

5 месяцев назад

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache ActiveMQ, Apache ActiveMQ Web. An authenticated attacker can show malicious content when browsing queues in the web console by overriding the content type to be HTML (instead of XML) and by injecting HTML into a JMS selector field. This issue affects Apache ActiveMQ: before 5.19.6, from 6.0.0 before 6.2.5; Apache ActiveMQ Web: before 5.19.6, from 6.0.0 before 6.2.5. Users are recommended to upgrade to version 6.2.5 or 5.19.6, which fixes the issue.

CVSS3: 4.6
EPSS: Низкий
nvd логотип

CVE-2026-41043

5 месяцев назад

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache ActiveMQ, Apache ActiveMQ Web. An authenticated attacker can show malicious content when browsing queues in the web console by overriding the content type to be HTML (instead of XML) and by injecting HTML into a JMS selector field. This issue affects Apache ActiveMQ: before 5.19.6, from 6.0.0 before 6.2.5; Apache ActiveMQ Web: before 5.19.6, from 6.0.0 before 6.2.5. Users are recommended to upgrade to version 6.2.5 or 5.19.6, which fixes the issue.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-41043

5 месяцев назад

Improper Neutralization of Script-Related HTML Tags in a Web Page (Bas ...

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260727-80-0012

около 2 месяцев назад

Уязвимость apache-activemq

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260727-73-0013

около 2 месяцев назад

Уязвимость apache-activemq

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2jp3-2923-9h52

5 месяцев назад

Apache ActiveMQ Vulnerable to Cross-site Scripting

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2026-11863

5 месяцев назад

Уязвимость веб-консоли управления программных платформ Apache ActiveMQ и Apache ActiveMQ Web, позволяющая нарушителю внедрять вредоносный HTML-контент

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-41043

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache ActiveMQ, Apache ActiveMQ Web. An authenticated attacker can show malicious content when browsing queues in the web console by overriding the content type to be HTML (instead of XML) and by injecting HTML into a JMS selector field. This issue affects Apache ActiveMQ: before 5.19.6, from 6.0.0 before 6.2.5; Apache ActiveMQ Web: before 5.19.6, from 6.0.0 before 6.2.5. Users are recommended to upgrade to version 6.2.5 or 5.19.6, which fixes the issue.

CVSS3: 6.5
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-41043

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache ActiveMQ, Apache ActiveMQ Web. An authenticated attacker can show malicious content when browsing queues in the web console by overriding the content type to be HTML (instead of XML) and by injecting HTML into a JMS selector field. This issue affects Apache ActiveMQ: before 5.19.6, from 6.0.0 before 6.2.5; Apache ActiveMQ Web: before 5.19.6, from 6.0.0 before 6.2.5. Users are recommended to upgrade to version 6.2.5 or 5.19.6, which fixes the issue.

CVSS3: 4.6
1%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-41043

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Apache ActiveMQ, Apache ActiveMQ Web. An authenticated attacker can show malicious content when browsing queues in the web console by overriding the content type to be HTML (instead of XML) and by injecting HTML into a JMS selector field. This issue affects Apache ActiveMQ: before 5.19.6, from 6.0.0 before 6.2.5; Apache ActiveMQ Web: before 5.19.6, from 6.0.0 before 6.2.5. Users are recommended to upgrade to version 6.2.5 or 5.19.6, which fixes the issue.

CVSS3: 6.5
1%
Низкий
5 месяцев назад
debian логотип
CVE-2026-41043

Improper Neutralization of Script-Related HTML Tags in a Web Page (Bas ...

CVSS3: 6.5
1%
Низкий
5 месяцев назад
redos логотип
ROS-20260727-80-0012

Уязвимость apache-activemq

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад
redos логотип
ROS-20260727-73-0013

Уязвимость apache-activemq

CVSS3: 6.5
1%
Низкий
около 2 месяцев назад
github логотип
GHSA-2jp3-2923-9h52

Apache ActiveMQ Vulnerable to Cross-site Scripting

CVSS3: 6.5
1%
Низкий
5 месяцев назад
fstec логотип
BDU:2026-11863

Уязвимость веб-консоли управления программных платформ Apache ActiveMQ и Apache ActiveMQ Web, позволяющая нарушителю внедрять вредоносный HTML-контент

CVSS3: 6.5
1%
Низкий
5 месяцев назад

Уязвимостей на страницу