{"api_version":"v1","generated_at":"2026-10-05T23:35:00+00:00","product":{"cve_count":19,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-apache-software-foundation-apache-activemq-3e840e78e1eb","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Apache ActiveMQ","next_cursor":null,"observations":[{"affected":"< 5.19.8; 6.0.0 < 6.2.7","affected_versions_present":true,"cve_id":"CVE-2026-49432","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49432","fixed":"Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings. The References section of this erratum contains a download link (you must log in to download the update).","last_modified":"2026-06-30T15:55:36.075Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-49432","primary_source":"","published":"2026-06-30T09:54:38.991Z"},{"affected":"< 5.19.8; 6.0.0 < 6.2.7","affected_versions_present":true,"cve_id":"CVE-2026-49877","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49877","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-30T12:29:12.251Z","patch_url":"","primary_source":"","published":"2026-06-30T09:53:42.706Z"},{"affected":"< 5.19.8; 6.0.0 < 6.2.7","affected_versions_present":true,"cve_id":"CVE-2026-52760","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-52760","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-30T15:58:39.098Z","patch_url":"","primary_source":"","published":"2026-06-30T09:50:30.176Z"},{"affected":"< 5.19.8; 6.0.0 < 6.2.7","affected_versions_present":true,"cve_id":"CVE-2026-53916","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53916","fixed":"Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings. The References section of this erratum contains a download link (you must log in to download the update).","last_modified":"2026-06-30T15:58:46.098Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-53916","primary_source":"","published":"2026-06-30T09:49:55.655Z"},{"affected":"< 5.19.8; 6.0.0 < 6.2.7","affected_versions_present":true,"cve_id":"CVE-2026-53917","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-53917","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-30T14:51:31.720Z","patch_url":"","primary_source":"","published":"2026-06-30T09:49:17.388Z"},{"affected":"< 5.19.7; 6.0.0 < 6.2.6","affected_versions_present":true,"cve_id":"CVE-2026-42253","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42253","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-03T09:25:55.984Z","patch_url":"","primary_source":"","published":"2026-06-01T07:23:50.962Z"},{"affected":"< 5.19.7; 6.0.0 < 6.2.6","affected_versions_present":true,"cve_id":"CVE-2026-49157","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-49157","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-06-01T14:42:33.386Z","patch_url":"","primary_source":"","published":"2026-06-01T07:20:10.862Z"},{"affected":"< 5.19.6; 6.0.0 < 6.2.5","affected_versions_present":true,"cve_id":"CVE-2026-41044","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-41044","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T02:48:41.675Z","patch_url":"","primary_source":"","published":"2026-04-24T10:16:53.518Z"},{"affected":"< 5.19.6; 6.0.0 < 6.2.5","affected_versions_present":true,"cve_id":"CVE-2026-41043","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-41043","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-24T18:17:14.457Z","patch_url":"","primary_source":"","published":"2026-04-24T10:16:23.810Z"},{"affected":"6.0.0 < 6.2.4","affected_versions_present":true,"cve_id":"CVE-2026-40046","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-40046","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-10T19:41:00.618Z","patch_url":"","primary_source":"","published":"2026-04-09T15:58:32.966Z"},{"affected":"< 5.19.2; 6.0.0 < 6.1.9; 6.2.0 < 6.2.1","affected_versions_present":true,"cve_id":"CVE-2025-66168","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-66168","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-10T10:52:27.564Z","patch_url":"","primary_source":"","published":"2026-03-04T08:45:00.932Z"},{"affected":"6.0.0 < 6.1.6; 5.18.0 < 5.18.7; 5.17.0 < 5.17.7; 5.16.0 < 5.16.8","affected_versions_present":true,"cve_id":"CVE-2025-27533","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-27533","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-03T19:45:36.972Z","patch_url":"","primary_source":"","published":"2025-05-07T08:59:00.249Z"},{"affected":"6.0.0 \u2264 6.1.1","affected_versions_present":true,"cve_id":"CVE-2024-32114","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-32114","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-02T02:06:44.047Z","patch_url":"","primary_source":"","published":"2024-05-02T08:29:18.219Z"},{"affected":"< 5.16.6; 5.17.0 < 5.17.4","affected_versions_present":true,"cve_id":"CVE-2022-41678","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-41678","fixed":"5.18.0; 6.0.0","last_modified":"2025-11-03T21:46:33.574Z","patch_url":"https://activemq.apache.org/security-advisories.data/CVE-2022-41678-announcement.txt","primary_source":"","published":"2023-11-28T15:08:38.338Z"},{"affected":"Apache ActiveMQ Artemis < 2.16.0; Apache ActiveMQ < 5.16.1","affected_versions_present":true,"cve_id":"CVE-2021-26117","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-26117","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T20:19:20.050Z","patch_url":"https://www.oracle.com//security-alerts/cpujul2021.html","primary_source":"","published":"2021-01-27T00:00:00.000Z"},{"affected":"5.0.0 to 5.15.5","affected_versions_present":true,"cve_id":"CVE-2018-8006","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-8006","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T18:24:11.216Z","patch_url":"","primary_source":"","published":"2018-10-10T14:00:00.000Z"},{"affected":"5.0.0 - 5.15.5","affected_versions_present":true,"cve_id":"CVE-2018-11775","cve_url":"https://cve.blacktree.nl/cve/CVE-2018-11775","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-09-16T16:23:47.592Z","patch_url":"https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html","primary_source":"","published":"2018-09-10T20:00:00.000Z"},{"affected":"Apache ActiveMQ 5.14.0 to 5.15.2","affected_versions_present":true,"cve_id":"CVE-2017-15709","cve_url":"https://cve.blacktree.nl/cve/CVE-2017-15709","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T22:14:34.363Z","patch_url":"","primary_source":"","published":"2018-02-13T20:00:00.000Z"},{"affected":"5.0.0 to 5.14.1","affected_versions_present":true,"cve_id":"CVE-2016-6810","cve_url":"https://cve.blacktree.nl/cve/CVE-2016-6810","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-16T22:41:37.290Z","patch_url":"","primary_source":"","published":"2018-01-10T15:00:00.000Z"}],"source_generated_at":"2026-10-05T06:20:29.126Z","vendor":"Apache Software Foundation"}}
