Known vulnerabilities in RabbitMQ Server 4.2.6

Vendor: Broadcom
Version: 4.2.6
Software CPE: cpe:2.3:a:broadcom:rabbitmq_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 36
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting RabbitMQ Server version 4.2.6 RabbitMQ Server 4.2.6 is affected by 36 vulnerabilities: 8 medium, 28 low Critical High Medium Low

Vulnerabilities (36)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU143940 - Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
CVE-2026-67421
CWE-80 Low
No
No
3.13.19, 4.0.24, 4.1.15, 4.2.10, 4.3.5 18.08.2026 SB2026081823
#VU143938 - Improper input validation
CVE-2026-67418
CWE-20 Low
No
No
3.13.19, 4.0.24, 4.1.15, 4.2.10, 4.3.5 18.08.2026 SB2026081823
#VU143937 - Improper Access Control
CVE-2026-67420
CWE-284 Low
No
No
3.13.19, 4.0.24, 4.1.15, 4.2.10, 4.3.5 18.08.2026 SB2026081823
#VU143936 - Inefficient Algorithmic Complexity
CWE-407 Low
No
No
4.2.10, 4.3.5 18.08.2026 SB2026072454
#VU143935 - Improper input validation
CWE-20 Low
No
No
4.2.10, 4.3.5 18.08.2026 SB2026072454
#VU143934 - Resource exhaustion
CWE-400 Medium
No
No
4.2.10, 4.3.5 18.08.2026 SB2026072454
#VU143933 - Improper Check for Unusual or Exceptional Conditions
CWE-754 Low
No
No
4.2.10, 4.3.5 18.08.2026 SB2026072454
#VU143932 - Improper Access Control
CWE-284 Low
No
No
3.13.19, 4.0.24, 4.1.15, 4.2.10, 4.3.5 18.08.2026 SB2026081823
#VU143931 - Improper Access Control
CWE-284 Low
No
No
3.13.19, 4.0.24, 4.1.15, 4.2.10, 4.3.5 18.08.2026 SB2026081823
#VU143930 - Allocation of Resources Without Limits or Throttling
CWE-770 Medium
No
No
3.13.19, 4.0.24, 4.1.15, 4.2.10, 4.3.5 18.08.2026 SB2026081823
#VU143929 - Insufficiently Protected Credentials
CWE-522 Low
No
No
3.13.19, 4.0.24, 4.1.15, 4.2.10, 4.3.5 18.08.2026 SB2026081823
#VU139303 - Allocation of Resources Without Limits or Throttling
CWE-770 Low
No
No
4.0.24, 4.1.15, 4.2.10, 4.3.4 24.07.2026 SB2026072454
#VU139302 - Improper input validation
CWE-20 Low
No
No
4.0.24, 4.1.15, 4.2.10, 4.3.4 24.07.2026 SB2026072454
#VU139301 - Resource exhaustion
CWE-400 Low
No
No
4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139299 - Missing Authorization
CVE-2026-61837
CWE-862 Low
No
No
4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139298 - Resource exhaustion
CWE-400 Low
No
No
4.0.22, 4.1.14, 4.2.7 24.07.2026 SB2026072454
#VU139297 - Resource exhaustion
CWE-400 Low
No
No
4.0.22, 4.1.14, 4.2.7, 4.3.1 24.07.2026 SB2026072454
#VU139296 - Unchecked Return Value
CWE-252 Medium
No
No
3.13.18, 4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139295 - Exposure of sensitive information to an unauthorized actor
CWE-200 Medium
No
No
4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139286 - Insufficient Session Expiration
CWE-613 Medium
No
No
4.2.9, 4.3.3 24.07.2026 SB2026072454


Showing elements 1 - 20 out of 36