Apache Qpid Broker-J

6 known vulnerabilities in Apache Qpid Broker-J, 1 critical, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-92573 CVSS 6.5 medium Improper handling of compressed data in the shared GZIP decompressor used for AMQP 0-8/0-9/0-9-1 and AMQP 0-10 message delivery, message…
  • CVE-2026-92564 CVSS 7.5 high A pre-authentication attacker could leverage type nesting to cause a StackOverflowError potentially leading to denial of service. This…
  • CVE-2026-92560 CVSS 7.5 high A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of…
  • CVE-2026-92550 CVSS 7.5 high A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of…
  • CVE-2026-92609 CVSS 9.8 critical Session fixation in HTTP management authentication allows remote attackers to gain unauthorized access to an authenticated management…
  • CVE-2026-92608 CVSS 7.5 high Improper handling of property-encoding exceptions in AMQP 1.0-to-AMQP 0-10 message conversion allows authenticated message producers to…