Known vulnerabilities in RabbitMQ Server 3.13.8 - page 2

Vendor: Broadcom
Version: 3.13.8
Software CPE: cpe:2.3:a:broadcom:rabbitmq_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 42
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting RabbitMQ Server version 3.13.8 RabbitMQ Server 3.13.8 is affected by 42 vulnerabilities: 3 high, 11 medium, 28 low Critical High Medium Low

Vulnerabilities (42)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU137253 - Missing Authorization
CWE-862 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137251 - Improper Handling of Highly Compressed Data (Data Amplification)
CWE-409 Medium
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137250 - Improper Certificate Validation
CWE-295 High
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137249 - Allocation of Resources Without Limits or Throttling
CWE-770 Medium
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137246 - Allocation of Resources Without Limits or Throttling
CWE-770 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137245 - Resource exhaustion
CWE-400 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137244 - Cleartext Storage of Sensitive Information
CWE-312 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137243 - Resource exhaustion
CWE-400 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137242 - Improper Certificate Validation
CWE-295 High
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137241 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CWE-22 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6, 4.3.1 09.07.2026 SB2026070934
#VU137240 - Missing Origin Validation in WebSockets
CWE-1385 Medium
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137239 - Allocation of Resources Without Limits or Throttling
CWE-770 Medium
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137237 - Resource exhaustion
CWE-400 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137236 - Resource exhaustion
CWE-400 Low
No
No
3.13.15, 4.1.0 alpha, 4.1.11, 4.2.6, 4.3.1 09.07.2026 SB2026070934
#VU137235 - Overly Permissive Cross-domain Whitelist
CWE-942 High
No
No
4.0.0 beta.1, 4.1.0 alpha, 4.2.0 beta.1, 4.2.6 09.07.2026 SB2026070934
#VU137233 - Information Exposure Through Log Files
CWE-532 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU137229 - Missing Authorization
CWE-862 Low
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 09.07.2026 SB2026070934
#VU135153 - Improper Access Control
CVE-2026-57215
CWE-284 Medium
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 25.06.2026 SB2026062518
SB2026073101
SB2026073107
#VU135152 - Improper Access Control
CVE-2026-57216
CWE-284 Medium
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6 25.06.2026 SB2026062518
#VU135147 - Exposure of sensitive information to an unauthorized actor
CVE-2026-57219
CWE-200 Medium
No
No
3.13.15, 4.0.20, 4.1.11, 4.2.6, 4.3.0 25.06.2026 SB2026062518
SB2026073101
SB2026073107


Showing elements 21 - 40 out of 42