Multiple vulnerabilities in RabbitMQ allow a remote attacker to conduct cross-site scripting attacks and bypass security measures. The CVSS Base Score for these vulnerabilities is 7.4 (High). Affected versions include RabbitMQ open source versions prior to 4.1.2, 4.0.13, 4.3.0, and 4.2.4, and a mitigation is available.
[WID-SEC-2026-1397] RabbitMQ: Mehrere Schwachstellen CVSS Base Score 7.4 (hoch) CVSS Temporal Score 6.4 (mittel) Remoteangriff ja Datum 06.05.2026 Stand 07.05.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Produktbeschreibung RabbitMQ ist ein Open-Source Message Broker. Produkte 06.05.2026 Open Source RabbitMQ <4.1.2 Open Source RabbitMQ <4.0.13 Open Source RabbitMQ <4.3.0 Open Source RabbitMQ <4.2.4 Angriff Angriff Ein Angreifer kann mehrere Schwachstellen in RabbitMQ ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen, und um Sicherheitsvorkehrungen zu umgehen. CVE Informationen Versionshistorie Feedback zum Advisory geben