The vulnerability CVE-2026-57215 (CVSS 8.8 HIGH) in RabbitMQ involves improper persistence of direct-reply-to bindings, which can allow an attacker to inject unauthorized reply channels and create persistent phantom queues. Affected versions are RabbitMQ Server 3.13.0 through versions prior to 4.2.6, and the issue is resolved by upgrading to version 4.2.6.
We use optional cookies to improve your experience on our websites, such as through social media connections, and to display personalized advertising based on your online activity. If you reject optional cookies, only cookies necessary to provide you the services will be used. You may change your selection by clicking “Manage Cookies” at the bottom of the page. Privacy Statement Third-Party Cookies AcceptRejectManage cookies MSRC  Customer Guidance  Security Update Guide  Not found  Request failed with status code 404 404 ~ Not found The page you were looking for was either not found or not available! Your Privacy Choices Consumer Health Privacy Privacy & Cookies