Re: [EXTERNAL] Re: ActiveMQ 5.19.0 Security Vulnerabilities

2025-04-21 Thread Simmons, Delbert
rough 5.3.16." However, ActiveMQ Classic 5.19.0 ships with Spring 5.3.39. This seems like a false positive from your scanner. Justin On Mon, Apr 21, 2025 at 10:28 AM Simmons, Delbert < delbert.simm...@zigabyte.com> wrote: > Hi, > > I am new to the group. Hoping to get some informat

ActiveMQ 5.19.0 Security Vulnerabilities

2025-04-21 Thread Simmons, Delbert
Hi, I am new to the group. Hoping to get some information on two vulnerabilities that were returned when running a Trivy scan on ActiveMQ 5.19.0. I realize these would be resolved if we just upgraded to ActiveMQ 6.1.6, but another piece of software on our system is not compatible with Java 17