[MAVEN:GHSA-66GW-CH5V-74V8] Cross-site scripting (XSS) in Apache ActiveMQ

Severity Moderate
Affected Packages 2
Fixed Packages 2
CVEs 1

An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console on the message.jsp page of Apache ActiveMQ versions 5.15.12 through 5.16.0.

ID
MAVEN:GHSA-66GW-CH5V-74V8
Severity
moderate
URL
https://github.com/advisories/GHSA-66gw-ch5v-74v8
Published
2022-02-09T22:01:32
(2 years ago)
Modified
2023-02-01T05:05:13
(19 months ago)
Rights
Maven Security Team
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:maven/org.apache.activemq/activemq-parent org.apache.activemq activemq-parent < 5.15.14
Fixed pkg:maven/org.apache.activemq/activemq-parent org.apache.activemq activemq-parent = 5.15.14
Affected pkg:maven/org.apache.activemq/activemq-parent org.apache.activemq activemq-parent >= 5.16.0 < 5.16.1
Fixed pkg:maven/org.apache.activemq/activemq-parent org.apache.activemq activemq-parent = 5.16.1
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...