Home
MEDIUM: 5.6 CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N >= 3.7.0, < 4.0.13
affected
>= 4.1.0-alpha, < 4.1.2
affected
Description
RabbitMQ is a messaging and streaming broker. From 3.7.0 to before 4.1.2 and 4.0.13, This vulnerability is fixed in 4.1.2 and 4.0.13.
Problem types
CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
Product status
>= 4.1.0-alpha, < 4.1.2
References
github.com/...server/security/advisories/GHSA-fh5r-jpm3-fjwp
github.com/...ommit/7f54319279d1ece161ae0b4cdc6f0e58a4045eb5