THREATOPS
THREAT OPSThreat News › CVE-2026-74761: Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Spoofing of RemoveSubscription clientId

CVE-2026-74761: Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Spoofing of RemoveSubscription clientId

medoss_secPublished 2026-09-08

<p>Posted by Matt Pavlovich on Sep 08</p>Severity: moderate <br /> <br /> Affected versions:<br /> <br /> - Apache ActiveMQ Broker (org.apache.activemq:activemq-broker) 6.0.0 before 6.3.2<br /> - Apache ActiveMQ Broker (org.apache.activemq:activemq-broker) before 5.19.11<br /> - Apache ActiveMQ All (org.apache.activemq:activemq-all) 6.0.0 before 6.3.2<br /> - Apache ActiveMQ All (org.apache.active

Indicators of compromise

Original source: https://seclists.org/oss-sec/2026/q3/676