Known vulnerabilities in Spring AMQP 3.0.0-RC1

Vendor: Broadcom
Software: Spring AMQP
Version: 3.0.0-RC1
Software CPE: cpe:2.3:a:broadcom:spring_amqp:*:*:*:*:*:*:*:*
Total vulnerabilities: 7
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Spring AMQP version 3.0.0-RC1 Spring AMQP 3.0.0-RC1 is affected by 7 vulnerabilities: 7 low Critical High Medium Low

Vulnerabilities (7)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU146205 - Improper input validation
CVE-2026-59275
CWE-20 Low
No
No
2.4.19, 3.2.13, 4.0.4.1, 4.0.5, 4.1.0.1, 4.1.1 28.08.2026 SB20260828163
#VU146203 - Information Exposure Through Log Files
CVE-2026-59271
CWE-532 Low
No
No
2.4.19, 3.2.13, 4.0.4.1, 4.0.5, 4.1.0.1, 4.1.1 28.08.2026 SB20260828163
#VU146202 - Improper Certificate Validation
CVE-2026-59272
CWE-295 Low
No
No
2.4.19, 3.2.13, 4.0.4.1, 4.0.5, 4.1.0.1, 4.1.1 28.08.2026 SB20260828163
#VU146197 - Resource exhaustion
CVE-2026-47860
CWE-400 Low
No
No
2.4.19, 3.2.13, 4.0.4.1, 4.0.5, 4.1.0.1, 4.1.1 28.08.2026 SB20260828163
#VU146178 - Improper Certificate Validation
CVE-2026-41714
CWE-295 Low
No
No
2.4.18, 3.1.16, 3.2.10.1, 3.2.11, 4.0.3.1, 4.0.4 28.08.2026 SB20260828157
#VU146177 - Generation of Predictable Numbers or Identifiers
CVE-2026-41701
CWE-340 Low
No
No
2.4.18, 3.1.16, 3.2.10.1, 3.2.11, 4.0.3.1, 4.0.4 28.08.2026 SB20260828157
#VU83980 - Deserialization of Untrusted Data
CVE-2023-34050
CWE-502 Low
Public exploit available
No
2.4.17, 3.0.10 07.12.2023 SB2023120728
SB2023120730