Search CVE reports


Toggle filters

101 – 110 of 50227 results

Status is adjusted based on your filters.


CVE-2026-67234

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 4.2.0 until 4.2.8 and 4.3.2, get_auth_mechanism/1 used term_to_binary/1 on the strict_auth_mechanism or preferred_auth_mechanism atom when clearing the corresponding cookie,...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67230

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.15, 4.0.20, 4.1.11, and 4.2.6, the Web STOMP WebSocket handler enforced neither max_frame_size nor login_timeout before authentication, allowing...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67227

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 4.0.0 until 4.0.22 and 4.1.14 and 4.2.7 and 4.3.1, Atom exhaustion: toatom on global-parameter :name. resourceexists/2 (and the PUT/DELETE handlers)...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67226

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 4.0.0 until 4.0.22 and 4.1.14 and 4.2.7, Admin-only atom exhaustion: PUT /api/users tags list. settags/2 maps rabbitdatacoercion:toatom/1 over the user's tags list. The 20 MB...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67225

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.15, 4.0.20, 4.1.11, and 4.2.6, the stream protocol stored the FrameMax value negotiated during the Tune handshake but did not compare it with an inbound frame's...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67223

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. The advisory establishes affected 3.13, 4.0, 4.1, 4.2, and 4.3 maintenance lines but contains conflicting first-fixed versions for the 3.13, 4.0, and 4.1 lines. fill/2 substitutes...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-67222

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.15, 4.0.20, 4.1.11, and 4.2.6, mechanisms/1 applied list_to_atom/1 to every colon-delimited token in an attacker-controlled auth_mechanism value, permanently...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66078

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.15 and 4.0.20 and 4.1.11 and 4.2.6, protected tag bypass via bulk-delete. dELETE /api/users/:name refuses to delete users tagged...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66073

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.15 and 4.0.20 and 4.1.11 and 4.2.6, Atom table exhaustion via management API node field. pUT /api/queues/:vhost/:name (and the exchanges and bindings endpoints)...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66071

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.15 and 4.0.22 and 4.1.11 and 4.2.6 and 4.3.1, Atom exhaustion: OAuth2 JWT tag: scope values. extractscopes/1 parses scopes of the form .tag: and...

1 affected package

rabbitmq-server

Package 20.04 LTS
rabbitmq-server Needs evaluation
Show less packages