Search CVE reports


Toggle filters

1061 – 1070 of 59781 results

Status is adjusted based on your filters.


CVE-2026-66075

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.1, is_authorized/2 for the /federation-links/.../restart route uses is_authorized_monitor (accepts the monitoring tag), while...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66074

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, match_value/3 passes the user-supplied ?name= regular expression to re:run with no match_limit option, and executes it once...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66072

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.1, get_chunk_selector/1 calls binary_to_atom on the raw client-supplied <<"chunk_selector">> property from post-auth subscribe...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66069

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 4.1.13, 4.2.7, and 4.3.0, is_authorized/2 uses is_authorized_monitor for all methods. DELETE resets rabbit_core_metrics:reset_auth_attempt_metrics(). Impact is...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66068

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, ?LOG_DEBUG("shutting down Shovel '~ts', ... Shovel state: ~tp", [Name, State]) formats the entire state map. The 'uris'...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66067

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 4.2.7 and 4.3.1, The stream open handler calls only check_vhost_access; it omits the node/vhost/user connection-limit checks that rabbit_reader performs for AMQP. A...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-96889

Medium priority
Needs evaluation

A flaw was found in librsvg. When processing an SVG document containing nested XML inclusions (Xincludes) with duplicate entity declarations, a use-after-free error can occur. This vulnerability arises because the library...

1 affected package

librsvg

Package 16.04 LTS
librsvg Needs evaluation
Show less packages

CVE-2026-67238

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 4.2.7 and 4.3.1, rabbit_pid_codec:decompose_from_binary/1 parses a caller-supplied ETF-encoded binary and calls binary_to_atom(Node, utf8) on the node-name field. It...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66079

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6, parse_array_primitive/2 for constructor 0x45 (list0) returns an element with byte-width B = 0. The enclosing array32 parser at...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages

CVE-2026-66076

Medium priority
Needs evaluation

RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and 4.3.0, is_authorized/2 calls rabbit_mgmt_util:is_authorized/2, which checks only the management tag, instead of...

1 affected package

rabbitmq-server

Package 16.04 LTS
rabbitmq-server Needs evaluation
Show less packages