April Linux Patch Wednesday. In April, Linux vendors addressed 1,035 vulnerabilities - nearly twice as many as in March. One might assume that most of these would again be Linux Kernel vulnerabilities, but that's not the case! Linux Kernel vulnerabilities were relatively few - just 209. The remaining vulnerabilities are distributed across more than 200 affected products. Notably, two vulnerabilities show evidence of active exploitation in the wild:
🔻 RCE - Apache ActiveMQ (CVE-2026-34197). Remote code execution is possible via the Jolokia API (/api/jolokia/) with no authentication required. The vulnerability remained hidden in the codebase for 13 years before being discovered using AI. Listed in the CISA KEV since April 16. Numerous exploits are available on GitHub.
[ Read the full post on avleonov.com ]
🗒 Full Vulristics report
@avleonovcom #LinuxPatchWednesday #Vulristics #CISAKEV #Linux #LinuxKernel #Apache #ActiveMQ #Chromium #GoogleChrome #Cockpit #CUPS #KVMTool #tar
Post #1644
669
