Activemq Nms Openwire Apache Activemq Nms Openwire

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Apache Activemq Nms Openwire.

By the Year

In 2026 there have been 0 vulnerabilities in Apache Activemq Nms Openwire. Last year, in 2025 Activemq Nms Openwire had 1 security vulnerability published. Right now, Activemq Nms Openwire is on track to have less security vulnerabilities in 2026 than it did last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 1 0.00

It may take a day or so for new Activemq Nms Openwire vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Apache Activemq Nms Openwire Security Vulnerabilities

Apache ActiveMQ NMS OpenWire Client <2.1.1 Deserialization Bug
CVE-2025-29953 - April 18, 2025

Deserialization of Untrusted Data vulnerability in Apache ActiveMQ NMS OpenWire Client. This issue affects Apache ActiveMQ NMS OpenWire Client before 2.1.1 when performing connections to untrusted servers. Such servers could abuse the unbounded deserialization in the client to provide malicious responses that may eventually cause arbitrary code execution on the client. Version 2.1.0 introduced a allow/denylist feature to restrict deserialization, but this feature could be bypassed. The .NET team has deprecated the built-in .NET binary serialization feature starting with .NET 9 and suggests migrating away from binary serialization. The project is considering to follow suit and drop this part of the NMS API altogether. Users are recommended to upgrade to version 2.1.1, which fixes the issue. We also recommend to migrate away from relying on .NET binary serialization as a hardening method for the future.

Marshaling, Unmarshaling

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Apache Activemq Nms Openwire or by Apache? Click the Watch button to subscribe.

Apache
Vendor

subscribe