Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 Maven

Improper Control of Generation of Code ('Code Injection') in org.apache.activemq:activemq-client

GHSA-jpv3-g4cc-6vfx · CVE-2019-0222

Published · Modified

Description

In Apache ActiveMQ 5.0.0 - 5.15.8, unmarshalling corrupt MQTT frame can lead to broker Out of Memory exception making it unresponsive.

References

Ready to move

Start Securing

Free, no credit card | First findings in minutes