CVE-2026-22886Disclosure(eclipse / openmq)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch eclipse openmq systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenMQ exposes a TCP-based management service (imqbrokerd) that by default requires authentication. However, the product ships with a default administrative account (admin/ admin) and does not enforce a mandatory password change on first use. After the first successful login, the server continues to accept the default password indefinitely without warning or enforcement. In real-world deployments, this service is often left enabled without changing the default credentials. As a result, a remote attacker with access to the service port could authenticate as an administrator and gain full control of the protocol’s administrative features.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-1391CWE-1392CWE-1393

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openmq

Threat summary

  • Patch or workaround signal is available
  • 9 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 8 signals
  • Disclosure: 6 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 8 mentions (2026-03-03); latest day: 1
  • 9 total mentions across 2 days

Affected systems

Vendors
Products
openmq

Deep dive

Activity timeline9 mentions / 2d
02468Mentions · 2026-03-03: 8Mentions · 2026-03-09: 1Patch / Workaround · 2026-03-03: 1Patch / Workaround · 2026-03-09: 1Technical Details · 2026-03-03: 7Technical Details · 2026-03-09: 103-0303-09
Signal classification3 categories
Disclosure
666.7%
Patch
222.2%
General
111.1%
Referenced assets10 URLs
Classification over time
DateTotalLabels
2026-03-038
Disclosure6General1Patch1
2026-03-091
Patch1
Full discourse9 posts
  • VulnTracker@vuln_tracker
    Disclosure

    🕵️ Did you catch this CVE? 🚨 CRITICAL: CVE-2026-22886 - Eclipse OpenMQ Default Credential Vulnerability 📊 CVSS 9.8 | Remote Authentication Bypass 🔓 Ships with admin/admin - no password change enforcement 🎯 Target: Enterprise message queuing infrastructure The fact that default credentials are still shipping in enterprise software in 2026 is mind-blowing. This isn't just a vuln - it's a fundamental security design failure. 🔗 Full details: https://vulntracker.io/cves/CVE-2026-22886 #InfoSec #CyberSecurity #CVE #EclipseOpenMQ

    Post summary

    CVE-2026-22886 is a critical Eclipse OpenMQ vulnerability that allows remote authentication bypass due to default admin/admin credentials, with a CVSS score of 9.8. No patch, exploit, or active exploitation details are provided.

    11010247
    365 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-22886 OpenMQ exposes a TCP-based management service (imqbrokerd) that by default requires authentication. However, the product ships with a default administrative account (… https://www.cve.org/CVERecord?id=CVE-2026-22886

    Post summary

    The CVE-2026-22886 vulnerability involves OpenMQ’s TCP‑based management service, which, despite requiring authentication, ships with a default administrative account that could be exploited for unauthorized access.

    01010536
    56.6K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-22886 OpenMQ exposes a TCP-based management service (imqbrokerd) that by default requires authentication. However, the product ships with a default administrative account (… https://www.cve.org/CVERecord?id=CVE-2026-22886 ----- Traducción: CVE-2026-22886 Ope… http://infoflow.cloud`

    Post summary

    The post announces CVE‑2026‑22886, highlighting that OpenMQ’s TCP‑based management service exposes a default admin account, but it does not provide a PoC, exploit, or patch information.

    0001033
    55 followersView on X
  • ThaiCERT By NCSA@ThaiCERTByNCSA
    Patch

    🛑 ด่วน! แจ้งเตือนช่องโหว่ใน Eclipse OpenMQ 🛑 ⚠️ ThaiCERT ได้ติดตามสถานการณ์ภัยคุกคามทางไซเบอร์ และพบประกาศด้านความปลอดภัยเกี่ยวกับช่องโหว่ CVE-2026-22886 ซึ่งกระทบต่อ Eclipse OpenMQ โดยเป็นปัญหาการใช้ ข้อมูลรับรองเริ่มต้น (default credentials) ใน TCP-based management service ชื่อ imqbrokerd ทำให้ผู้โจมตีที่สามารถเข้าถึงพอร์ตของบริการนี้ สามารถเข้าสู่ระบบด้วยบัญชีผู้ดูแลเริ่มต้น admin/admin และเข้าควบคุมความสามารถด้านการบริหารจัดการของระบบได้ทั้งหมด 1. รายละเอียดช่องโหว่ CVE-2026-22886 - Use of Default Credentials / Default Password (CVSS v3.1: 9.8) ช่องโหว่นี้เกิดจากระบบมีบัญชีผู้ดูแลค่าเริ่มต้นและไม่บังคับเปลี่ยนรหัสผ่านเมื่อใช้งานครั้งแรกส่งผลให้รหัสผ่านเริ่มต้นยังคงใช้ได้อย่างต่อเนื่อง หากผู้โจมตีเข้าถึงพอร์ตของบริการ imqbrokerd ได้ ก็สามารถยืนยันตัวตนเป็นผู้ดูแลและเข้าควบคุมฟังก์ชันการบริหารจัดการของ broker ได้ 2. ผลิตภัณฑ์ที่ได้รับผลกระทบ Eclipse OpenMQ ทุกเวอร์ชัน 3. แนวทางการแก้ไข - เปลี่ยนรหัสผ่านเริ่มต้นของ Eclipse OpenMQ 4. แนวทางลดความเสี่ยง - ตรวจสอบทันทีว่ามีการเปิดใช้บริการ imqbrokerd หรือไม่ - ปิด service ดังกล่าวหากไม่จำเป็น - หากจำเป็นต้องใช้งานให้เปลี่ยนรหัสผ่านเริ่มต้นของบัญชีผู้ดูแลทันทีเป็นรหัสผ่านที่รัดกุมและไม่ซ้ำ - จำกัดการเข้าถึงพอร์ตให้เฉพาะผู้ดูแลที่ได้รับอนุญาต 5.แหล่งอ้างอิง - https://dg.th/1vxqlprwea - https://dg.th/fsydbjm0rh

    Post summary

    ThaiCERT warns of CVE‑2026‑22886 in Eclipse OpenMQ affecting default credentials; recommends changing passwords or disabling the service, with no evidence of active exploitation or proof‑of‑concept disclosed.

    0000085
    50 followersView on X
  • The AI generalist@AIengineerlife
    Disclosure

    🚨 CVE-2026-22886 - CRITICAL Oracle OpenMQ 🤖 AI Summary: OpenMQ ships with default admin credentials that never expire, allowing remote attackers full administrative control. ThreatScore: 92/100 🔗 http://threatmonitor.io/cve/CVE-2026-22886 #cybersecurity #infosec #CVE

    Post summary

    The post announces a critical vulnerability in Oracle OpenMQ where default admin credentials never expire, enabling remote attackers to gain full administrative control.

    0000043
    8 followersView on X
  • CVEFind.com@CveFindCom
    Patch

    [CVE-2026-22886: CRITICAL] Warning: OpenMQ's default admin account (admin/admin) is risky! Without enforced password changes, attackers might access admin features. Stay safe, change defaults!#cve,CVE-2026-22886,#cybersecurity https://cvefind.com/CVE-2026-22886

    Post summary

    The post highlights that OpenMQ’s default admin credentials pose a critical risk and advises users to change defaults to mitigate the vulnerability.

    0000055
    593 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-22886 - Critical OpenMQ exposes a TCP-based management service (imqbrokerd) that by default requires authentication. However, the product ships with a default administrative account (admin/ admin) and doe... https://www.thehackerwire.com/vulnerability/CVE-2026-22886/ https://t.co/1fxoePweVW

    Post summary

    The post announces CVE-2026-22886, highlighting that OpenMQ’s management service uses default admin credentials, potentially allowing unauthorized access.

    0000053
    121 followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-22886 - Apache OpenMQ Default Administrative Account Vulnerability Intel Report: https://ift.tt/U9VRWth

    Post summary

    The alert announces CVE-2026-22886, a default administrative account vulnerability in Apache OpenMQ, and provides a link to an Intel report for further details.

    0000032
    342 followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    General

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-22886 Intel Report: https://ift.tt/sIkPFOh

    Post summary

    A brief alert referencing CVE-2026-22886 with a link to an Intel report, but no further details or actionable information are provided.

    0000034
    342 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appeclipseopenmq---

Explore more