https://seclists.org/oss-sec/2026/q1/249: CVE-2026-27446: Apache Artemis, Apache ActiveMQ Artemis: Auth bypass for Codownstam federation
Published Mar 3, 2026
·Updated
Affected Software
2 affected components
Apache ARTEMIS>=2.50.0<=2.51.0
Apache ActiveMQ Artemis>=2.11.0<=2.44.0
Frequently Asked Questions
1
What is the severity of CVE-2026-27446?
CVE-2026-27446 has been classified as a critical severity vulnerability.
2
How do I fix CVE-2026-27446?
To fix CVE-2026-27446, upgrade Apache Artemis to version 2.51.0 or later and Apache ActiveMQ Artemis to version 2.44.0 or later.
3
Which versions of Apache Artemis are affected by CVE-2026-27446?
Affected versions of Apache Artemis include 2.50.0 through 2.51.0.
4
Which versions of Apache ActiveMQ Artemis are affected by CVE-2026-27446?
Affected versions of Apache ActiveMQ Artemis include 2.11.0 through 2.44.0.
5
What type of vulnerability is CVE-2026-27446?
CVE-2026-27446 is categorized as a Missing Authentication for Critical Function vulnerability.