Product

ActiveMQ

Made by Apache Software Foundation. 3 of its vulnerabilities are known to have been exploited.

Coverage

Severity: CriticalAction: Act nowExploitation: ExploitedCISA KEV

Armatura LLC Armatura One

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to gain unauthorized access to the database, execute arbitrary code on the host with the highest level of privilege, or gain control of the physical access-control system. The following versions of Armatura LLC Armatura One are affected: Armatura One <4.7.2 (CVE-2023-46604, CVE-2026-94591, CVE-2026-94592, CVE-2026-94593…

Why it matters

CISA lists this as exploited in the wild and known to be used in ransomware campaigns. Unpatched ActiveMQ systems are exposed to active attacks now.

Act now

Treat this as an emergency.

Recent intelligence

The latest developments from the last 30 days, newest first.

  1. AdvisoryKEV

    Armatura LLC Armatura One

    Basis: CISA Cybersecurity Advisories (government advisory)

Actively exploited

Apache ActiveMQ

Apache ActiveMQ Improper Input Validation Vulnerability

Added Apr 16, 2026Fed. due Apr 30, 2026
CVE-2023-46604RansomwareCVSS 9.8

Apache ActiveMQ

Apache ActiveMQ Deserialization of Untrusted Data Vulnerability

Added Nov 2, 2023Fed. due Nov 23, 2023Coverage →

Apache ActiveMQ

Apache ActiveMQ Improper Input Validation Vulnerability

Added Feb 10, 2022Fed. due Aug 10, 2022