VYPR

Bitnami package

rabbitmq

pkg:bitnami/rabbitmq

Vulnerabilities (66)

  • CVE-2026-67219MedSep 23, 2026
    affected >= 3.13.0, < 3.13.15fixed 3.13.15

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, add_binding/3 parses the routing key as an integer weight N and computes ring positions with lists:seq(NextN0, NextN0 + N - 1). validate_binding/2 only checks N >= 1 , no up

  • CVE-2026-67218LowSep 23, 2026
    affected >= 4.0.0, < 4.0.22fixed 4.0.22

    RabbitMQ is a messaging and streaming broker. Prior to versions 4.0.22, 4.1.11, 4.2.6, and 4.3.0, accept_content/2 at line 56 calls rabbit_stream_manager:create_super_stream/... directly after is_authorized (which only checks the management tag + vhost access via is_authorized_vh

  • CVE-2026-66080MedSep 23, 2026
    affected >= 4.1.0, < 4.1.11fixed 4.1.11

    RabbitMQ is a messaging and streaming broker. Prior to versions 4.1.11, 4.2.6, and 4.3.0, validate_partitions only checks that the requested partition count is at least 1, with no upper bound. A large count such as lists:seq(0, 500000000) allocates roughly 8GB. Preconditions incl

  • CVE-2026-66077HigSep 23, 2026
    affected >= 3.13.0, < 3.13.15fixed 3.13.15

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6, The management UI uses EJS 1.0 in which <%= ... %> does NOT HTML-escape. connection.ejs:135 renders <%= connection.ssl_details.peer_cert_subject %> (and peer_cert_issuer) directly

  • CVE-2026-66075LowSep 23, 2026
    affected >= 3.13.0, < 3.13.15fixed 3.13.15

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.1, is_authorized/2 for the /federation-links/.../restart route uses is_authorized_monitor (accepts the monitoring tag), while allowed_methods permits DELETE and delete_resource

  • CVE-2026-66074MedSep 23, 2026
    affected >= 3.13.0, < 3.13.15fixed 3.13.15

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, match_value/3 passes the user-supplied ?name= regular expression to re:run with no match_limit option, and executes it once per resource in the result set. OTP's default 10M

  • CVE-2026-66072MedSep 23, 2026
    affected >= 3.13.0, < 3.13.15fixed 3.13.15

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.1, get_chunk_selector/1 calls binary_to_atom on the raw client-supplied <<"chunk_selector">> property from post-auth subscribe and resolve_offset_spec frames, with no whitelist

  • CVE-2026-66069LowSep 23, 2026
    affected >= 4.1.0, < 4.1.13fixed 4.1.13

    RabbitMQ is a messaging and streaming broker. Prior to versions 4.1.13, 4.2.7, and 4.3.0, is_authorized/2 uses is_authorized_monitor for all methods. DELETE resets rabbit_core_metrics:reset_auth_attempt_metrics(). Impact is cosmetic (counters only, no log erasure), but inconsiste

  • CVE-2026-66068MedSep 23, 2026
    affected >= 3.13.0, < 3.13.15fixed 3.13.15

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, ?LOG_DEBUG("shutting down Shovel '~ts', ... Shovel state: ~tp", [Name, State]) formats the entire state map. The 'uris' field holds plaintext URIs after credentials_obfuscat

  • CVE-2026-66067MedSep 23, 2026
    affected >= 4.2.0, < 4.2.7fixed 4.2.7

    RabbitMQ is a messaging and streaming broker. Prior to versions 4.2.7 and 4.3.1, The stream open handler calls only check_vhost_access; it omits the node/vhost/user connection-limit checks that rabbit_reader performs for AMQP. A developer %% FIXME comment at the cited line explic

  • CVE-2026-67238HigSep 23, 2026
    affected >= 4.2.0, < 4.2.7fixed 4.2.7

    RabbitMQ is a messaging and streaming broker. Prior to versions 4.2.7 and 4.3.1, rabbit_pid_codec:decompose_from_binary/1 parses a caller-supplied ETF-encoded binary and calls binary_to_atom(Node, utf8) on the node-name field. It is reached from rabbit_volatile_queue:pid_from_nam

  • CVE-2026-66079HigSep 23, 2026
    affected >= 3.13.0, < 3.13.15fixed 3.13.15

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6, parse_array_primitive/2 for constructor 0x45 (list0) returns an element with byte-width B = 0. The enclosing array32 parser at line 148 reads a 4-byte Count from the wire and loops

  • CVE-2026-66076LowSep 23, 2026
    affected >= 3.13.0, < 3.13.15fixed 3.13.15

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, is_authorized/2 calls rabbit_mgmt_util:is_authorized/2, which checks only the management tag, instead of is_authorized_vhost/2. The /api/queues/quorum/:vhost/:queue/status h

  • CVE-2026-66070HigSep 23, 2026
    affected >= 3.13.0, < 3.13.17fixed 3.13.17

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.17, 4.0.22, 4.1.13, and 4.2.6, match_origin/1 returned the bare reflected Origin and allowed credentials even when the wildcard "" was configured, so the response echoed the attacker's origin together with Acces

  • CVE-2026-44839MedMay 27, 2026
    affected >= 3.7.0, < 4.0.13fixed 4.0.13

    RabbitMQ is a messaging and streaming broker. From 3.7.0 to before 4.1.2 and 4.0.13, This vulnerability is fixed in 4.1.2 and 4.0.13.

  • CVE-2026-44838HigMay 27, 2026
    affected >= 4.2.0, < 4.2.4fixed 4.2.4

    RabbitMQ is a messaging and streaming broker. From 4.2.0 to before 4.2.4, RabbitMQ's MQTT plugin allows for topic-level authorization using regular expressions with variable substitution. Administrators can create patterns such as ^{client_id}-sensors$ to restrict user access to

  • CVE-2025-50200MedJun 19, 2025
    affected < 4.0.8fixed 4.0.8

    RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64. When querying RabbitMQ api with HTTP/s with basic authentication it creates logs with all headers in request, including authorizat

  • CVE-2025-30219MedMar 25, 2025
    affected < 4.0.3fixed 4.0.3

    RabbitMQ is a messaging and streaming broker. Versions prior to 4.0.3 are vulnerable to a sophisticated attack that could modify virtual host name on disk and then make it unrecoverable (with other on disk file modifications) can lead to arbitrary JavaScript code execution in the

  • CVE-2024-51988MedNov 6, 2024
    affected >= 3.12.7, < 3.12.11fixed 3.12.11

    RabbitMQ is a feature rich, multi-protocol messaging and streaming broker. In affected versions queue deletion via the HTTP API was not verifying the `configure` permission of the user. Users who had all of the following: 1. Valid credentials, 2. Some permissions for the target v

  • CVE-2023-46118MedOct 25, 2023
    affected < 3.11.24fixed 3.11.24

    RabbitMQ is a multi-protocol messaging and streaming broker. HTTP API did not enforce an HTTP request body limit, making it vulnerable for denial of service (DoS) attacks with very large messages. An authenticated user with sufficient credentials can publish a very large messages