VYPR

rabbitmq_web_stomp

by Rabbitmq

Source repositories

CVEs (1)

  • CVE-2026-67230MedSep 25, 2026
    risk 0.34cvss —epss 0.00

    RabbitMQ is a messaging and streaming broker. From 3.13.0 until 3.13.15, 4.0.20, 4.1.11, and 4.2.6, the Web STOMP WebSocket handler enforced neither max_frame_size nor login_timeout before authentication, allowing an unauthenticated client to keep a connection alive with a slow…