Known vulnerabilities in RabbitMQ Server 4.1.12

Version: 4.1.12
Software CPE: cpe:2.3:a:vmware:rabbitmq_server:*:*:*:*:*:*:*:*
Total vulnerabilities: 13
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting RabbitMQ Server version 4.1.12 RabbitMQ Server 4.1.12 is affected by 13 vulnerabilities: 2 medium, 11 low Critical High Medium Low

Vulnerabilities (13)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU139303 - Allocation of Resources Without Limits or Throttling
CWE-770 Low
No
No
4.0.24, 4.1.15, 4.2.10, 4.3.4 24.07.2026 SB2026072454
#VU139302 - Improper input validation
CWE-20 Low
No
No
4.0.24, 4.1.15, 4.2.10, 4.3.4 24.07.2026 SB2026072454
#VU139299 - Missing Authorization
CVE-2026-61837
CWE-862 Low
No
No
4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139298 - Resource exhaustion
CWE-400 Low
No
No
4.0.22, 4.1.14, 4.2.7 24.07.2026 SB2026072454
#VU139297 - Resource exhaustion
CWE-400 Low
No
No
4.0.22, 4.1.14, 4.2.7, 4.3.1 24.07.2026 SB2026072454
#VU139296 - Unchecked Return Value
CWE-252 Medium
No
No
3.13.18, 4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139294 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139293 - Improper Encoding or Escaping of Output
CWE-116 Low
No
No
4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139292 - Incorrect Authorization
CWE-863 Low
No
No
3.13.18, 4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139291 - Missing Authorization
CWE-862 Low
No
No
3.13.18, 4.0.24, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139290 - Inefficient Regular Expression Complexity
CWE-1333 Low
No
No
4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139289 - Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection')
CWE-90 Low
No
No
3.13.18, 4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454
#VU139288 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Medium
No
No
3.13.18, 4.0.23, 4.1.14, 4.2.9, 4.3.3 24.07.2026 SB2026072454