VendorsVMwarerabbitmqany version
Vulnerabilities

VMware RabbitMQ any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2021-22116
RabbitMQ all versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP 1.0 client connection endpoint. A malicious user can exploit the vulnerability by sending malicious AMQP messages to the target RabbitMQ instance having the AMQP 1.0 plugin enabled.
Published 2021-06-08 · Modified
7.5EPSS 0.014
CVE-2022-31008
Predictable credential obfuscation seed value used in rabbitmq-server
Published 2022-10-06 · Modified
7.5EPSS 0.003
CVE-2021-32718
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in RabbitMQ management UI
Published 2021-06-28 · Modified
5.4EPSS 0.014
CVE-2023-46118
Denial of Service by publishing large messages over the HTTP API
Published 2023-10-24 · Modified
4.9EPSS 0.011
CVE-2021-32719
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in RabbitMQ federation management plugin
Published 2021-06-28 · Modified
4.8EPSS 0.014
CVE-2019-11291
RabbitMQ XSS attack via federation and shovel endpoints
Published 2019-11-22 · Modified
4.8EPSS 0.008