Количество 8
Количество 8
CVE-2025-50200
RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64. When querying RabbitMQ api with HTTP/s with basic authentication it creates logs with all headers in request, including authorization headers which show base64 encoded username:password. This is easy to decode and afterwards could be used to obtain control to the system depending on credentials. This issue has been patched in version 4.0.8.
CVE-2025-50200
RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64. When querying RabbitMQ api with HTTP/s with basic authentication it creates logs with all headers in request, including authorization headers which show base64 encoded username:password. This is easy to decode and afterwards could be used to obtain control to the system depending on credentials. This issue has been patched in version 4.0.8.
CVE-2025-50200
RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64. When querying RabbitMQ api with HTTP/s with basic authentication it creates logs with all headers in request, including authorization headers which show base64 encoded username:password. This is easy to decode and afterwards could be used to obtain control to the system depending on credentials. This issue has been patched in version 4.0.8.
CVE-2025-50200
RabbitMQ Node can log Basic Auth header from an HTTP request
CVE-2025-50200
RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and p ...
SUSE-SU-2025:3809-1
Security update for rabbitmq-server
SUSE-SU-2025:03234-1
Security update for rabbitmq-server313
ROS-20251029-02
Уязвимость rabbitmq-server
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-50200 RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64. When querying RabbitMQ api with HTTP/s with basic authentication it creates logs with all headers in request, including authorization headers which show base64 encoded username:password. This is easy to decode and afterwards could be used to obtain control to the system depending on credentials. This issue has been patched in version 4.0.8. | CVSS3: 5.5 | 0% Низкий | 5 месяцев назад | |
CVE-2025-50200 RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64. When querying RabbitMQ api with HTTP/s with basic authentication it creates logs with all headers in request, including authorization headers which show base64 encoded username:password. This is easy to decode and afterwards could be used to obtain control to the system depending on credentials. This issue has been patched in version 4.0.8. | CVSS3: 4.4 | 0% Низкий | 5 месяцев назад | |
CVE-2025-50200 RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and prior, RabbitMQ is logging authorization headers in plaintext encoded in base64. When querying RabbitMQ api with HTTP/s with basic authentication it creates logs with all headers in request, including authorization headers which show base64 encoded username:password. This is easy to decode and afterwards could be used to obtain control to the system depending on credentials. This issue has been patched in version 4.0.8. | CVSS3: 5.5 | 0% Низкий | 5 месяцев назад | |
CVE-2025-50200 RabbitMQ Node can log Basic Auth header from an HTTP request | 0% Низкий | 2 месяца назад | ||
CVE-2025-50200 RabbitMQ is a messaging and streaming broker. In versions 3.13.7 and p ... | CVSS3: 5.5 | 0% Низкий | 5 месяцев назад | |
SUSE-SU-2025:3809-1 Security update for rabbitmq-server | 0% Низкий | 11 дней назад | ||
SUSE-SU-2025:03234-1 Security update for rabbitmq-server313 | 0% Низкий | около 2 месяцев назад | ||
ROS-20251029-02 Уязвимость rabbitmq-server | CVSS3: 5.5 | 0% Низкий | 9 дней назад |
Уязвимостей на страницу