The Java OpenWire protocol marshaller is vulnerable to Remote Code Execution. This vulnerability may allow a remote attacker with network access to either a Java-based OpenWire broker or client to run arbitrary shell commands by manipulating serialized class types in the OpenWire protocol to cause either the client or the broker (respectively) to instantiate any class on the classpath. Users are recommended to upgrade both brokers and clients to version 5.15.16, 5.16.7, 5.17.6, or 5.18.3 which fixes this issue.
https://securelist.com/vulnerabilities-and-exploits-in-q2-2026/121091/
https://thehackernews.com/2026/04/apache-activemq-cve-2026-34197-added-to.html
https://thehackernews.com/2026/04/over-1000-exposed-comfyui-instances.html
https://www.vulncheck.com/blog/return-of-the-kinsing
https://www.bitsight.com/blog/rondodox-botnet-infrastructure-analysis
https://www.theregister.com/2025/08/19/apache_activemq_patch_malware/
https://www.infosecurity-magazine.com/news/attacker-patches-vulnerability/
https://www.darkreading.com/cyberattacks-data-breaches/dripdropper-hackers-patch-own-exploit
https://thehackernews.com/2025/08/apache-activemq-flaw-exploited-to.html
https://redcanary.com/blog/threat-intelligence/dripdropper-linux-malware/
https://www.infosecurity-magazine.com/news/automation-vulnerability/
https://thehackernews.com/2025/05/mimo-hackers-exploit-cve-2025-32432-in.html
https://www.security.com/threat-intelligence/ransomware-trends-2025
https://www.cisa.gov/news-events/cybersecurity-advisories/aa24-242a
https://www.cisa.gov/news-events/cybersecurity-advisories/aa24-207a
https://blog.xlab.qianxin.com/catddos-derivative-en/
https://www.cybereason.com/blog/beware-of-the-messengers-exploiting-activemq-vulnerability
https://thehackernews.com/2024/01/apache-activemq-flaw-exploited-in-new.html
https://horizon3.ai/attack-research/disclosures/cve-2026-34197-activemq-rce-jolokia/
https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-14
https://www.cisa.gov/news-events/ics-advisories/icsa-24-130-03
https://thehackernews.com/2023/11/new-poc-exploit-for-apache-activemq.html
https://github.com/stefanotractor/activemq-cve-2023-46604-lab
https://github.com/test-avm-714877d2df585126/dependabot-cve-test-2
https://github.com/test-avm-714877d2df585126/dependabot-cve-test
https://github.com/aelshimony-cloud/OpenWire-CVE-2023-46604-Investigation
https://github.com/REGGYRAIDER/CVE-2023-46604-RCE
https://github.com/1392081456/sigma-detection-rules
https://github.com/1392081456/ctf-notes
https://github.com/DiegoRodriguez-GL/bigschool-ciberseguridad
https://github.com/trnguyen03/activemq-ids-ips-lab
https://github.com/KlaasStessens/CVE-2023-46604
https://github.com/Navya240/intel471-threat-hunting-cve-2023-46604
https://github.com/Catherines77/ActiveMQ-EXPtools
https://github.com/KONDORDEVSECURITYCORP/CVE-2026-34197
https://github.com/DEVSECURITYSPRO/CVE-2026-34197
https://github.com/mkdemir/activemq-lockbit-analysis
https://github.com/jbogdanov/activemq-cve-playground
https://github.com/Leegreen305/CVE-Threat-Intelligence-Tracker
https://github.com/fiza-naeem0902/Vulnerability-Assessment
https://github.com/pavanaa4k/CVE-2023-46604-LAB
https://github.com/vaishnavucv/Project-Vuln-Detection-N-Mitigation_101
https://github.com/erickrr-bd/PoC-CVE
https://github.com/CCIEVoice2009/CVE-2023-46604
https://github.com/ohnahee/CVE_2023_46604_poc
https://github.com/hungnqdz/cve
https://github.com/cuanh2333/CVE-2023-46604
https://github.com/thinkycx/activemq-rce-cve-2023-46604
https://github.com/Arlenhiack/ActiveMQ-RCE-Exploit
https://github.com/mrpentst/CVE-2023-46604
https://github.com/dcm2406/CVELab
https://github.com/dcm2406/CVE-Research
https://github.com/dcm2406/CVE-Lab
https://github.com/LiritoShawshark/CVE-2023-46604_ActiveMQ_RCE_Recurrence
https://github.com/duck-sec/CVE-2023-46604-ActiveMQ-RCE-pseudoshell
https://github.com/justdoit-cai/CVE-2023-46604-Apache-ActiveMQ-RCE-exp
https://github.com/sule01u/CVE-2023-46604
https://github.com/SaumyajeetDas/CVE-2023-46604-RCE-Reverse-Shell-Apache-ActiveMQ