CVE-2026-34197CISA KEV: Actively Exploited

Apache ActiveMQ Improper Input Validation Vulnerability

Published Apr 16, 2026·Updated Apr 16, 2026

Description

Apache ActiveMQ contains an improper input validation vulnerability that allows for code injection.

Public Exploits & PoCs9 found

[POC] CVE-2026-34197 — CVE-2026-34197

CVE-2026-34197 activemq PoC

3

[POC] CVE-2026-34197 — CVE-2026-34197

这是一个面向防守和内网排查的 Apache ActiveMQ Classic 暴露面检测工具,用于辅助评估 CVE-2026-34197 相关风险。

1

[POC] CVE-2026-34197 — CVE-2026-34197

CVE-2026-34197

1

[POC] CVE-2026-34197 — CVE-2026-34197

Apache ActiveMQ RCE via Jolokia vulnerability analysis and reproduction notes

[POC] CVE-2026-34197 — CVE-2026-34197-Apache-ActiveMQ-RCE

CVE-2026-34197

[POC] CVE-2026-34197 — CVE-2026-34197

CVE-2026-34197 - Apache ActiveMQ RCE via Jolokia Endpoint PoC

[POC] CVE-2026-34197 — CVE-2026-34197

CVE-2026-34197 — Apache ActiveMQ RCE via Jolokia API | PoC Exploit

[POC] CVE-2026-34197 — CVE-2026-34197

CVE-2026-34197: Apache ActiveMQ Classic RCE via Jolokia API (CVSS 8.8). Python & Nmap NSE detection scripts. A 13-year-old vulnerability allows remote code execution through the addNetworkConnector MBean operation. Unauthenticated on versions 6.0.0 to 6.1.1. Fixed in 5.19.4 and 6.2.3.

[POC] CVE-2026-34197 — CVE-2026-34197

POC

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free