VYPR

management UI

by Rabbitmq

CVEs (1)

  • CVE-2026-66077HigSep 23, 2026
    risk 0.47cvss epss

    RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6, The management UI uses EJS 1.0 in which <%= ... %> does NOT HTML-escape. connection.ejs:135 renders <%= connection.ssl_details.peer_cert_subject %> (and peer_cert_issuer) directly…