← volver
CVE-2026-44839

RabbitMQ: Unsanitized vhost names allow for XSS in management UI

CVSS 5.6 MEDIUMEPSS 0.2%CWE-80
RabbitMQ is a messaging and streaming broker. From 3.7.0 to before 4.1.2 and 4.0.13, This vulnerability is fixed in 4.1.2 and 4.0.13.
CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Productos afectados
rabbitmq · rabbitmq-server

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →