Artemis is a project of the Apache Software Foundation and follows the ASF vulnerability handling process.
Before reporting a vulnerability please ensure:
- It falls within the scope of our threat model.
- It has not already been reported. Existing advisories are enumerated on our website.
To report a new vulnerability please follow the ASF vulnerability reporting process.
Security updates are provided for the following versions:
| Version | Supported |
|---|---|
| 2.x | ✅ |
| 1.x | ❌ |
We recommend always using the latest stable release to ensure you have the most recent security fixes.
Apache Artemis uses Apache's vulnerability severity rating system.