Description
In Apache ActiveMQ Artemis prior to 2.24.0, an attacker could show malicious content and/or redirect users to a malicious URL in the web console by using HTML in the name of an address or queue.
No analysis available yet.
Remediation
Vendor Workaround
Upgrade to Apache ActiveMQ Artemis 2.24.0.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6543 | In Apache ActiveMQ Artemis prior to 2.24.0, an attacker could show malicious content and/or redirect users to a malicious URL in the web console by using HTML in the name of an address or queue. |
Github GHSA |
GHSA-cv6r-h2fm-pvrp | HTML Injection in ActiveMQ Artemis Web Console |
References
History
Mon, 15 Jun 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apache artemis
|
|
| CPEs | cpe:2.3:a:apache:artemis:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apache activemq Artemis
|
Apache artemis
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-03T09:36:44.249Z
Reserved: 2022-07-06T00:00:00.000Z
Link: CVE-2022-35278
No data.
Status : Modified
Published: 2022-08-23T15:15:11.247
Modified: 2026-06-17T04:51:42.617
Link: CVE-2022-35278
OpenCVE Enrichment
No data.
EUVD
Github GHSA