Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-57211

23 дня назад

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ management plugin static file handler rabbit_mgmt_wm_static can pass URL-encoded backslashes to erl_prim_loader:read_file_info before path validation when multiple management extension plugins are enabled, causing outbound DNS and SMB requests to attacker-controlled UNC paths. This issue is fixed in versions 4.1.11 and 4.2.6.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2026-57211

23 дня назад

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ management plugin static file handler rabbit_mgmt_wm_static can pass URL-encoded backslashes to erl_prim_loader:read_file_info before path validation when multiple management extension plugins are enabled, causing outbound DNS and SMB requests to attacker-controlled UNC paths. This issue is fixed in versions 4.1.11 and 4.2.6.

CVSS3: 10
EPSS: Низкий
nvd логотип

CVE-2026-57211

23 дня назад

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ management plugin static file handler rabbit_mgmt_wm_static can pass URL-encoded backslashes to erl_prim_loader:read_file_info before path validation when multiple management extension plugins are enabled, causing outbound DNS and SMB requests to attacker-controlled UNC paths. This issue is fixed in versions 4.1.11 and 4.2.6.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-57211

19 дней назад

RabbitMQ: UNC SSRF affecting the management UI on Windows

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-57211

23 дня назад

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2. ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-7v84-m3g5-vxq6

около 2 месяцев назад

UNC SSRF affecting RabbitMQ management UI on Windows

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-57211

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ management plugin static file handler rabbit_mgmt_wm_static can pass URL-encoded backslashes to erl_prim_loader:read_file_info before path validation when multiple management extension plugins are enabled, causing outbound DNS and SMB requests to attacker-controlled UNC paths. This issue is fixed in versions 4.1.11 and 4.2.6.

CVSS3: 6.5
0%
Низкий
23 дня назад
redhat логотип
CVE-2026-57211

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ management plugin static file handler rabbit_mgmt_wm_static can pass URL-encoded backslashes to erl_prim_loader:read_file_info before path validation when multiple management extension plugins are enabled, causing outbound DNS and SMB requests to attacker-controlled UNC paths. This issue is fixed in versions 4.1.11 and 4.2.6.

CVSS3: 10
0%
Низкий
23 дня назад
nvd логотип
CVE-2026-57211

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2.6 on Windows, the RabbitMQ management plugin static file handler rabbit_mgmt_wm_static can pass URL-encoded backslashes to erl_prim_loader:read_file_info before path validation when multiple management extension plugins are enabled, causing outbound DNS and SMB requests to attacker-controlled UNC paths. This issue is fixed in versions 4.1.11 and 4.2.6.

CVSS3: 6.5
0%
Низкий
23 дня назад
msrc логотип
CVE-2026-57211

RabbitMQ: UNC SSRF affecting the management UI on Windows

CVSS3: 6.5
0%
Низкий
19 дней назад
debian логотип
CVE-2026-57211

RabbitMQ is a messaging and streaming broker. Prior to 4.1.11 and 4.2. ...

CVSS3: 6.5
0%
Низкий
23 дня назад
github логотип
GHSA-7v84-m3g5-vxq6

UNC SSRF affecting RabbitMQ management UI on Windows

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу