Loading
An unsafe parsing of OpenMQ's configuration, allows a remote attacker to read arbitrary files from a MQ Broker's server. A full exploitation could read unauthorized files of the OpenMQ’s host OS. In some scenarios RCE could be achieved.
Use CWE-22, Eclipse vendor hub and Openmq product page to widen CVE-2026-24457 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-22886 for nearby disclosures in the same product family.