{
  "document": {
    "aggregate_severity": {
      "namespace": "https://access.redhat.com/security/updates/classification/",
      "text": "Important"
    },
    "category": "csaf_vex",
    "csaf_version": "2.0",
    "distribution": {
      "text": "Copyright © Red Hat, Inc. All rights reserved.",
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en",
    "notes": [
      {
        "category": "legal_disclaimer",
        "text": "This content is licensed under the Creative Commons Attribution 4.0 International License (https://creativecommons.org/licenses/by/4.0/). If you distribute this content, or a modified version of it, you must provide attribution to Red Hat Inc. and provide a link to the original.",
        "title": "Terms of Use"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "https://access.redhat.com/security/team/contact/",
      "issuing_authority": "Red Hat Product Security is responsible for vulnerability handling across all Red Hat products and services.",
      "name": "Red Hat Product Security",
      "namespace": "https://www.redhat.com"
    },
    "references": [
      {
        "category": "self",
        "summary": "Canonical URL",
        "url": "https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-41044.json"
      }
    ],
    "title": "org.apache.activemq/activemq-broker: org.apache.activemq/activemq-all: Apache ActiveMQ: Arbitrary code execution via improper input validation in admin console",
    "tracking": {
      "current_release_date": "2026-07-15T02:22:26+00:00",
      "generator": {
        "date": "2026-07-15T02:22:26+00:00",
        "engine": {
          "name": "Red Hat SDEngine",
          "version": "5.3.2"
        }
      },
      "id": "CVE-2026-41044",
      "initial_release_date": "2026-04-24T10:16:53.518000+00:00",
      "revision_history": [
        {
          "date": "2026-04-24T10:16:53.518000+00:00",
          "number": "1",
          "summary": "Initial version"
        },
        {
          "date": "2026-05-04T09:25:00.370645+00:00",
          "number": "2",
          "summary": "Current version"
        },
        {
          "date": "2026-07-15T02:22:26+00:00",
          "number": "3",
          "summary": "Last generated version"
        }
      ],
      "status": "final",
      "version": "3"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat AMQ Broker 7",
                "product": {
                  "name": "Red Hat AMQ Broker 7",
                  "product_id": "red_hat_amq_broker_7",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:amq_broker:7"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat AMQ Broker 7"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat Data Grid 8",
                "product": {
                  "name": "Red Hat Data Grid 8",
                  "product_id": "red_hat_data_grid_8",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:jboss_data_grid:8"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat Data Grid 8"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux 8",
                "product": {
                  "name": "Red Hat Enterprise Linux 8",
                  "product_id": "red_hat_enterprise_linux_8",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:redhat:enterprise_linux:8"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat Enterprise Linux 8"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat Enterprise Linux 9",
                "product": {
                  "name": "Red Hat Enterprise Linux 9",
                  "product_id": "red_hat_enterprise_linux_9",
                  "product_identification_helper": {
                    "cpe": "cpe:/o:redhat:enterprise_linux:9"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat Enterprise Linux 9"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat Fuse 7",
                "product": {
                  "name": "Red Hat Fuse 7",
                  "product_id": "red_hat_fuse_7",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:jboss_fuse:7"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat Fuse 7"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat JBoss Enterprise Application Platform 7",
                "product": {
                  "name": "Red Hat JBoss Enterprise Application Platform 7",
                  "product_id": "red_hat_jboss_enterprise_application_platform_7",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:jboss_enterprise_application_platform:7"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat JBoss Enterprise Application Platform 7"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat JBoss Enterprise Application Platform 8",
                "product": {
                  "name": "Red Hat JBoss Enterprise Application Platform 8",
                  "product_id": "red_hat_jboss_enterprise_application_platform_8",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:jboss_enterprise_application_platform:8"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat JBoss Enterprise Application Platform 8"
          },
          {
            "branches": [
              {
                "category": "product_name",
                "name": "Red Hat JBoss Enterprise Application Platform Expansion Pack",
                "product": {
                  "name": "Red Hat JBoss Enterprise Application Platform Expansion Pack",
                  "product_id": "red_hat_jboss_enterprise_application_platform_expansion_pack",
                  "product_identification_helper": {
                    "cpe": "cpe:/a:redhat:jbosseapxp"
                  }
                }
              }
            ],
            "category": "product_family",
            "name": "Red Hat JBoss Enterprise Application Platform Expansion Pack"
          },
          {
            "category": "product_version",
            "name": "activemq-broker",
            "product": {
              "name": "activemq-broker",
              "product_id": "activemq-broker",
              "product_identification_helper": {
                "purl": "pkg:maven/org.apache.activemq/activemq-broker"
              }
            }
          },
          {
            "category": "product_version",
            "name": "log4j-slf4j",
            "product": {
              "name": "log4j-slf4j",
              "product_id": "log4j-slf4j",
              "product_identification_helper": {
                "purl": "pkg:rpm/redhat/log4j-slf4j?rpmmod=log4j:2"
              }
            }
          },
          {
            "category": "product_version",
            "name": "log4j-web",
            "product": {
              "name": "log4j-web",
              "product_id": "log4j-web",
              "product_identification_helper": {
                "purl": "pkg:rpm/redhat/log4j-web?rpmmod=log4j:2"
              }
            }
          },
          {
            "category": "product_version",
            "name": "log4j-jcl",
            "product": {
              "name": "log4j-jcl",
              "product_id": "log4j-jcl",
              "product_identification_helper": {
                "purl": "pkg:rpm/redhat/log4j-jcl?rpmmod=log4j:2"
              }
            }
          },
          {
            "category": "product_version",
            "name": "log4j",
            "product": {
              "name": "log4j",
              "product_id": "log4j",
              "product_identification_helper": {
                "purl": "pkg:rpm/redhat/log4j?rpmmod=log4j:2"
              }
            }
          },
          {
            "category": "product_version",
            "name": "log4j.src",
            "product": {
              "name": "log4j.src",
              "product_id": "log4j.src",
              "product_identification_helper": {
                "purl": "pkg:rpm/redhat/log4j?arch=src"
              }
            }
          },
          {
            "category": "product_version",
            "name": "activemq-all",
            "product": {
              "name": "activemq-all",
              "product_id": "activemq-all",
              "product_identification_helper": {
                "purl": "pkg:maven/org.apache.activemq/activemq-all"
              }
            }
          }
        ],
        "category": "vendor",
        "name": "Red Hat"
      }
    ],
    "relationships": [
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "activemq-broker as a component of Red Hat AMQ Broker 7",
          "product_id": "red_hat_amq_broker_7:activemq-broker"
        },
        "product_reference": "activemq-broker",
        "relates_to_product_reference": "red_hat_amq_broker_7"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "activemq-broker as a component of Red Hat Data Grid 8",
          "product_id": "red_hat_data_grid_8:activemq-broker"
        },
        "product_reference": "activemq-broker",
        "relates_to_product_reference": "red_hat_data_grid_8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "log4j as a component of Red Hat Enterprise Linux 8",
          "product_id": "red_hat_enterprise_linux_8:log4j"
        },
        "product_reference": "log4j",
        "relates_to_product_reference": "red_hat_enterprise_linux_8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "log4j-jcl as a component of Red Hat Enterprise Linux 8",
          "product_id": "red_hat_enterprise_linux_8:log4j-jcl"
        },
        "product_reference": "log4j-jcl",
        "relates_to_product_reference": "red_hat_enterprise_linux_8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "log4j-slf4j as a component of Red Hat Enterprise Linux 8",
          "product_id": "red_hat_enterprise_linux_8:log4j-slf4j"
        },
        "product_reference": "log4j-slf4j",
        "relates_to_product_reference": "red_hat_enterprise_linux_8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "log4j-web as a component of Red Hat Enterprise Linux 8",
          "product_id": "red_hat_enterprise_linux_8:log4j-web"
        },
        "product_reference": "log4j-web",
        "relates_to_product_reference": "red_hat_enterprise_linux_8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "log4j-jcl as a component of Red Hat Enterprise Linux 9",
          "product_id": "red_hat_enterprise_linux_9:log4j-jcl"
        },
        "product_reference": "log4j-jcl",
        "relates_to_product_reference": "red_hat_enterprise_linux_9"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "log4j-slf4j as a component of Red Hat Enterprise Linux 9",
          "product_id": "red_hat_enterprise_linux_9:log4j-slf4j"
        },
        "product_reference": "log4j-slf4j",
        "relates_to_product_reference": "red_hat_enterprise_linux_9"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "log4j.src as a component of Red Hat Enterprise Linux 9",
          "product_id": "red_hat_enterprise_linux_9:log4j.src"
        },
        "product_reference": "log4j.src",
        "relates_to_product_reference": "red_hat_enterprise_linux_9"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "activemq-all as a component of Red Hat Fuse 7",
          "product_id": "red_hat_fuse_7:activemq-all"
        },
        "product_reference": "activemq-all",
        "relates_to_product_reference": "red_hat_fuse_7"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "activemq-broker as a component of Red Hat Fuse 7",
          "product_id": "red_hat_fuse_7:activemq-broker"
        },
        "product_reference": "activemq-broker",
        "relates_to_product_reference": "red_hat_fuse_7"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "activemq-broker as a component of Red Hat JBoss Enterprise Application Platform 7",
          "product_id": "red_hat_jboss_enterprise_application_platform_7:activemq-broker"
        },
        "product_reference": "activemq-broker",
        "relates_to_product_reference": "red_hat_jboss_enterprise_application_platform_7"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "activemq-broker as a component of Red Hat JBoss Enterprise Application Platform 8",
          "product_id": "red_hat_jboss_enterprise_application_platform_8:activemq-broker"
        },
        "product_reference": "activemq-broker",
        "relates_to_product_reference": "red_hat_jboss_enterprise_application_platform_8"
      },
      {
        "category": "default_component_of",
        "full_product_name": {
          "name": "activemq-broker as a component of Red Hat JBoss Enterprise Application Platform Expansion Pack",
          "product_id": "red_hat_jboss_enterprise_application_platform_expansion_pack:activemq-broker"
        },
        "product_reference": "activemq-broker",
        "relates_to_product_reference": "red_hat_jboss_enterprise_application_platform_expansion_pack"
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2026-41044",
      "cwe": {
        "id": "CWE-94",
        "name": "Improper Control of Generation of Code ('Code Injection')"
      },
      "discovery_date": "2026-04-24T11:01:07.538666+00:00",
      "flags": [
        {
          "label": "vulnerable_code_not_in_execute_path",
          "product_ids": [
            "red_hat_amq_broker_7:activemq-broker",
            "red_hat_fuse_7:activemq-broker"
          ]
        },
        {
          "label": "component_not_present",
          "product_ids": [
            "red_hat_data_grid_8:activemq-broker"
          ]
        },
        {
          "label": "vulnerable_code_not_present",
          "product_ids": [
            "red_hat_enterprise_linux_8:log4j",
            "red_hat_enterprise_linux_8:log4j-jcl",
            "red_hat_enterprise_linux_8:log4j-slf4j",
            "red_hat_enterprise_linux_8:log4j-web",
            "red_hat_enterprise_linux_9:log4j-jcl",
            "red_hat_enterprise_linux_9:log4j-slf4j",
            "red_hat_enterprise_linux_9:log4j.src",
            "red_hat_fuse_7:activemq-all",
            "red_hat_jboss_enterprise_application_platform_8:activemq-broker",
            "red_hat_jboss_enterprise_application_platform_expansion_pack:activemq-broker"
          ]
        }
      ],
      "ids": [
        {
          "system_name": "Red Hat Bugzilla ID",
          "text": "2461409"
        }
      ],
      "notes": [
        {
          "category": "description",
          "text": "A flaw was found in Apache ActiveMQ. An authenticated attacker can exploit an improper input validation vulnerability in the admin web console to craft a malicious broker name. This malicious name, containing an xbean binding, can be used by a virtual machine (VM) transport to load a remote Spring XML application. By triggering the VM transport creation, the attacker can execute arbitrary code on the broker's Java Virtual Machine (JVM).",
          "title": "Vulnerability description"
        },
        {
          "category": "summary",
          "text": "org.apache.activemq/activemq-broker: org.apache.activemq/activemq-all: Apache ActiveMQ: Arbitrary code execution via improper input validation in admin console",
          "title": "Vulnerability summary"
        },
        {
          "category": "other",
          "text": "This vulnerability is rated as important by Red Hat. Successful execution of this attack requires elevated privileges, as the attacker must have control over an authenticated user account with access to the admin web console.",
          "title": "Statement"
        },
        {
          "category": "general",
          "text": "The CVSS score(s) listed for this vulnerability do not reflect the associated product's status, and are included for informational purposes to better understand the severity of this vulnerability.",
          "title": "CVSS score applicability"
        }
      ],
      "product_status": {
        "known_affected": [
          "red_hat_jboss_enterprise_application_platform_7:activemq-broker"
        ],
        "known_not_affected": [
          "red_hat_amq_broker_7:activemq-broker",
          "red_hat_data_grid_8:activemq-broker",
          "red_hat_enterprise_linux_8:log4j",
          "red_hat_enterprise_linux_8:log4j-jcl",
          "red_hat_enterprise_linux_8:log4j-slf4j",
          "red_hat_enterprise_linux_8:log4j-web",
          "red_hat_enterprise_linux_9:log4j-jcl",
          "red_hat_enterprise_linux_9:log4j-slf4j",
          "red_hat_enterprise_linux_9:log4j.src",
          "red_hat_fuse_7:activemq-all",
          "red_hat_fuse_7:activemq-broker",
          "red_hat_jboss_enterprise_application_platform_8:activemq-broker",
          "red_hat_jboss_enterprise_application_platform_expansion_pack:activemq-broker"
        ]
      },
      "references": [
        {
          "category": "self",
          "summary": "Canonical URL",
          "url": "https://access.redhat.com/security/cve/CVE-2026-41044"
        },
        {
          "category": "external",
          "summary": "RHBZ#2461409",
          "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2461409"
        },
        {
          "category": "external",
          "summary": "https://www.cve.org/CVERecord?id=CVE-2026-41044",
          "url": "https://www.cve.org/CVERecord?id=CVE-2026-41044"
        },
        {
          "category": "external",
          "summary": "https://nvd.nist.gov/vuln/detail/CVE-2026-41044",
          "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41044"
        },
        {
          "category": "external",
          "summary": "http://www.openwall.com/lists/oss-security/2026/04/23/6",
          "url": "http://www.openwall.com/lists/oss-security/2026/04/23/6"
        },
        {
          "category": "external",
          "summary": "https://activemq.apache.org/security-advisories.data/CVE-2026-41044-announcement.txt",
          "url": "https://activemq.apache.org/security-advisories.data/CVE-2026-41044-announcement.txt"
        }
      ],
      "release_date": "2026-04-24T10:16:53.518000+00:00",
      "remediations": [
        {
          "category": "no_fix_planned",
          "details": "Will not fix",
          "product_ids": [
            "red_hat_jboss_enterprise_application_platform_7:activemq-broker"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.2,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            "red_hat_amq_broker_7:activemq-broker",
            "red_hat_data_grid_8:activemq-broker",
            "red_hat_enterprise_linux_8:log4j",
            "red_hat_enterprise_linux_8:log4j-jcl",
            "red_hat_enterprise_linux_8:log4j-slf4j",
            "red_hat_enterprise_linux_8:log4j-web",
            "red_hat_enterprise_linux_9:log4j-jcl",
            "red_hat_enterprise_linux_9:log4j-slf4j",
            "red_hat_enterprise_linux_9:log4j.src",
            "red_hat_fuse_7:activemq-all",
            "red_hat_fuse_7:activemq-broker",
            "red_hat_jboss_enterprise_application_platform_7:activemq-broker",
            "red_hat_jboss_enterprise_application_platform_8:activemq-broker",
            "red_hat_jboss_enterprise_application_platform_expansion_pack:activemq-broker"
          ]
        }
      ],
      "threats": [
        {
          "category": "impact",
          "details": "Important",
          "product_ids": [
            "red_hat_amq_broker_7:activemq-broker",
            "red_hat_data_grid_8:activemq-broker",
            "red_hat_enterprise_linux_8:log4j",
            "red_hat_enterprise_linux_8:log4j-jcl",
            "red_hat_enterprise_linux_8:log4j-slf4j",
            "red_hat_enterprise_linux_8:log4j-web",
            "red_hat_enterprise_linux_9:log4j-jcl",
            "red_hat_enterprise_linux_9:log4j-slf4j",
            "red_hat_enterprise_linux_9:log4j.src",
            "red_hat_fuse_7:activemq-all",
            "red_hat_fuse_7:activemq-broker",
            "red_hat_jboss_enterprise_application_platform_7:activemq-broker",
            "red_hat_jboss_enterprise_application_platform_8:activemq-broker",
            "red_hat_jboss_enterprise_application_platform_expansion_pack:activemq-broker"
          ]
        }
      ],
      "title": "org.apache.activemq/activemq-broker: org.apache.activemq/activemq-all: Apache ActiveMQ: Arbitrary code execution via improper input validation in admin console"
    }
  ]
}