AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2014-3600

CRITICAL · CVSS 9.8 EPSS 9.85%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-10-27 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2014-3600
Severity
CRITICAL
CVSS
9.8
EPSS
9.85%
Apache

Original Filing — NVD Description

XML external entity (XXE) vulnerability in Apache ActiveMQ 5.x before 5.10.1 allows remote consumers to have unspecified impact via vectors involving an XPath based selector when dequeuing XML messages.