CyberRota
← Ana sayfaya dön

CVE-2026-54475

HIGH · CVSS 7.5

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-06-30T11:16:30.407 · Çekilme zamanı: 2026-06-30T18:37:36.230089+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2026-54475
Severity
HIGH
CVSS
7.5
EPSS
Yok
Apache

Orijinal NVD Açıklaması

Missing Authorization vulnerability in Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ. Apache ActiveMQ Classic temporary destinations are expected to be isolated to the connection that created them. The isolation can be broken as this is only checked in the client, allowing a different connection to consume from another connection's temporary destination. This issue affects Apache ActiveMQ Broker: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ All: before 5.19.8, from 6.0.0 before 6.2.7; Apache ActiveMQ: before 5.19.8, from 6.0.0 before 6.2.7. Users are recommended to upgrade to version 6.2.7, which fixes the issue.