<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>cybercrime.club</title><link>https://cybercrime.club/tags/apache-activemq/</link><description>Infrastructure security news for people who build infrastructure.</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><lastBuildDate>Thu, 16 Apr 2026 21:47:33 -0400</lastBuildDate><atom:link href="https://cybercrime.club/tags/apache-activemq/" rel="self" type="application/rss+xml"/><item><title>CISA Adds Apache ActiveMQ CVE-2026-34197 to KEV as 13-Year-Old Jolokia RCE Sees Active Exploitation</title><link>https://cybercrime.club/posts/activemq-cve-2026-34197-jolokia-rce-cisa-kev/</link><pubDate>Thu, 16 Apr 2026 21:47:33 -0400</pubDate><guid>https://cybercrime.club/posts/activemq-cve-2026-34197-jolokia-rce-cisa-kev/</guid><description>CISA added CVE-2026-34197 to the KEV catalog today with an April 30 patch deadline. The 13-year-old Jolokia MBean flaw yields RCE on the broker JVM and is unauthenticated on ActiveMQ 6.0.0–6.1.1 when chained with CVE-2024-32114.</description><category>vulnerabilities</category></item></channel></rss>