Improper access control in RabbitMQ Server - #VU139287

 

Improper access control in RabbitMQ Server - #VU139287

Published: July 24, 2026


Vulnerability identifier: #VU139287
CSH Severity: Low
CVSS v4 BT: 4.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear]
CVE-ID: N/A
CWE-ID: CWE-284
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to bypass intended write permission restrictions and route unroutable messages into an alternate exchange.

The vulnerability exists due to improper access control in the AMQP 1.0 management exchange declaration path when handling HTTP-over-AMQP management requests that declare an exchange with the alternate-exchange argument. A remote privileged user can declare an exchange they can configure and set an unauthorized alternate exchange to bypass intended write permission restrictions and route unroutable messages into that exchange.

Exploitation requires AMQP 1.0 to be enabled and the ability to configure at least one exchange without having write permission on the target alternate exchange.


Affected software

RabbitMQ Server

Remediation

Install security update from vendor's website.

RabbitMQ Server - addressed in versions 4.2.9, 4.3.3

External References

Related Security Bulletins