Find notable cyber news and cases, enriched with sources, timelines, and signals.

CISA Apache ActiveMQ CVE-2026-34197 mitigation order

Advisory/Mitigation
First reported
Last updated
Happening score
H score 71
1 unique sources, 1 articles

Summary

Hide ▲

CISA ordered FCEB agencies to secure Apache ActiveMQ servers by April 30 after CVE-2026-34197 was confirmed actively exploited. The flaw can allow arbitrary code execution on unpatched systems, making exposed deployments urgent to remediate. Agencies are told to apply vendor mitigations or discontinue use if no mitigations are available.

Related Happenings

CISA BOD 26-04 three-day remediation directive

Public Sector Action
H score36 First: 24.06.2026 17:35 Last: 24.06.2026 17:35 Sources 1

About this happening: CISA's BOD 26-04 requires federal agencies to apply available security updates or vendor-recommended mitigations within three days, accelerating remediation for acti...

CISA KEV remediation for Android and Linux vulnerabilities

Advisory/Mitigation
H score57 First: 03.06.2026 18:36 Last: 03.06.2026 18:36 Sources 1

About this happening: CISA’s KEV update forced federal agencies to remediate CVE-2025-48595 and CVE-2022-0492 in Android and the Linux kernel before the June 5 deadline, or...

OpenDCIM multi-flaw exploitation wave (CVE-2026-28515, CVE-2026-28516, CVE-2026-28517)

Exploitation Wave
H score46 First: 17.05.2026 14:57 Last: 17.05.2026 14:57 Sources 1

About this happening: openDCIM is seeing an active exploitation wave tied to CVE-2026-28515, CVE-2026-28516, and CVE-2026-28517, with attackers targeting vulnerable installations an...

Microsoft Exchange CVE-2026-42897 mitigation advisory

Advisory/Mitigation
H score44 First: 15.05.2026 12:40 Last: 15.05.2026 12:40 Sources 1

About this happening: Microsoft issued immediate mitigation guidance for CVE-2026-42897, reducing risk for Exchange Server 2016, 2019, and Subscription Edition (SE) on-premises servers that...

Latest development: 15.05.2026 15:35

Microsoft issued temporary mitigation guidance for CVE-2026-42897 while a patch is still in development, recommending the Exchange Emergency Mitigation (EM) Service, which is enabled by default and can be checked with the Exchange Health Checker script, or the Exchange On-premises Mitigation Tool (EOMT) for disconnected or air-gapped environments. Microsoft noted that the mitigations can disrupt features such as OWA Print Calendar and Inline images, and that servers older than March 2023 cannot receive new mitigations through EM Service.

CISA KEV order for Copy Fail on federal Linux devices

Public Sector Action
H score33 First: 08.05.2026 10:45 Last: 08.05.2026 10:45 Sources 1

About this happening: CISA added Copy Fail to the Known Exploited Vulnerabilities (KEV) Catalog, making the Linux flaw a federal remediation priority. The agency ordered federal agencies*...

Timeline

  1. 21.04.2026 14:17 1 articles · 2mo ago

    Apache ActiveMQ patch release for CVE-2026-34197

    Mitigation Patch Update

    Apache maintainers patched CVE-2026-34197 on March 30 in ActiveMQ Classic versions 6.2.3 and 5.19.4, addressing an improper input validation weakness that can let authenticated threat actors execute arbitrary code on unpatched systems.

    Show sources
  2. 21.04.2026 14:17 2 articles · 2mo ago

    CISA mitigation order for actively exploited Apache ActiveMQ

    Legal Policy Action Update

    CISA warned that the Apache ActiveMQ vulnerability CVE-2026-34197 is actively exploited in attacks and ordered Federal Civilian Executive Branch agencies to secure their servers by April 30, with vendor mitigations or BOD 22-01 guidance required when available.

    Show sources