Known vulnerabilities in AMQ Streams - page 6

Software: AMQ Streams
Software CPE: cpe:2.3:a:red_hat:amq_streams:*:*:*:*:*:*:*:*
Total vulnerabilities: 119
Public exploits: 10
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting AMQ Streams AMQ Streams is affected by 119 known vulnerabilities: 1 critical, 13 high, 83 medium, 22 low Critical High Medium Low

Vulnerabilities (119)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU55642 - Insufficient Session Expiration
CVE-2021-34428
CWE-613 Low
No
No
1.8.0 08.08.2021 SB2021080801
SB2021080803
SB2021081922
and 25 more
#VU51878 - Exposure of sensitive information to an unauthorized actor
CVE-2021-28163
CWE-200 Medium
No
No
1.6.4, 1.8.0 01.04.2021 SB2021040179
SB2021050704
SB2021051321
and 27 more
#VU51877 - Improper input validation
CVE-2021-28164
CWE-20 Medium
Available
No
1.6.4, 1.8.0 01.04.2021 SB2021040179
SB2021050704
SB2021051321
and 22 more
#VU51876 - Resource exhaustion
CVE-2021-28165
CWE-400 Medium
No
No
1.6.4, 1.8.0 01.04.2021 SB2021040179
SB2021042208
SB2021050704
and 56 more
#VU48979 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2020-25649
CWE-611 Medium
No
No
1.7.0 03.12.2020 SB2020121510
SB2021020321
SB2021042112
and 68 more
#VU27924 - Incorrect Default Permissions
CVE-2020-1945
CWE-276 Low
No
No
1.5.0 15.05.2020 SB2020051501
SB2020052114
SB2020060205
and 48 more
#VU27513 - Resource exhaustion
CVE-2020-11612
CWE-400 Medium
No
No
1.5.0 04.05.2020 SB2020050435
SB2020073033
SB2021012210
and 35 more
#VU25598 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2019-20445
CWE-113 Medium
No
No
1.4.0 26.02.2020 SB2020012928
SB2020022601
SB2020031305
and 33 more
#VU25355 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2019-20444
CWE-444 Medium
No
No
1.4.0 14.02.2020 SB2020012928
SB2020022601
SB2020031305
and 36 more
#VU25353 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-7238
CWE-444 Medium
No
No
1.4.0 14.02.2020 SB2020021409
SB2020022521
SB2020022601
and 16 more
#VU24272 - Improper Access Control
CVE-2019-20330
CWE-284 Low
No
No
1.4.0 14.01.2020 SB2020010309
SB2020032709
SB2020042101
and 18 more
#VU24240 - Exposure of sensitive information to an unauthorized actor
CVE-2019-12399
CWE-200 Low
No
No
1.4.0 14.01.2020 SB2020011418
SB2020032709
SB2021012208
and 14 more
#VU21750 - Improper input validation
CVE-2019-17531
CWE-20 Medium
No
No
1.4.0 13.10.2019 SB2019100711
SB2019120206
SB2019121120
and 24 more
#VU21594 - Improper input validation
CVE-2019-17267
CWE-20 Medium
No
No
1.3.0 07.10.2019 SB2019100710
SB2019102422
SB2019120206
and 19 more
#VU21593 - Improper input validation
CVE-2019-16943
CWE-20 Medium
No
No
1.4.0 07.10.2019 SB2019100711
SB2019100716
SB2019120206
and 34 more
#VU21580 - Improper input validation
CVE-2019-16942
CWE-20 Medium
No
No
1.4.0 07.10.2019 SB2019100711
SB2019100716
SB2019111903
and 23 more
#VU21136 - Exposure of sensitive information to an unauthorized actor
CVE-2019-16335
CWE-200 Medium
No
No
1.3.0 16.09.2019 SB2019091616
SB2019100716
SB2019102422
and 21 more
#VU21135 - Exposure of sensitive information to an unauthorized actor
CVE-2019-14540
CWE-200 Medium
Available
No
1.3.0 16.09.2019 SB2019091616
SB2019100716
SB2019102422
and 23 more
#VU19937 - Exposure of sensitive information to an unauthorized actor
CVE-2019-14439
CWE-200 Medium
No
No
1.3.0 06.08.2019 SB2019073015
SB2019100716
SB2019102422
and 16 more


Showing elements 101 - 120 out of 119