Search CVE reports


Toggle filters

21 – 22 of 22 results


CVE-2014-9649

Negligible priority
Ignored

Cross-site scripting (XSS) vulnerability in the management plugin in RabbitMQ 2.1.0 through 3.4.x before 3.4.1 allows remote attackers to inject arbitrary web script or HTML via the path info to api/, which is not properly handled...

1 affected package

rabbitmq-server

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rabbitmq-server Not affected
Show less packages

CVE-2014-9494

Low priority
Ignored

RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.

1 affected package

rabbitmq-server

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
rabbitmq-server
Show less packages