org.apache.qpid:apache-qpid-broker-j
Maven3 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting org.apache.qpid:apache-qpid-broker-jpage 1 of 1
- CVE-2018-1298MEDIUMCVSS 5.9EG 5.9✓ Fixed in 7.0.12018-02-09
vulnerable: 7.0.0
A Denial of Service vulnerability was found in Apache Qpid Broker-J 7.0.0 in functionality for authentication of connections for AMQP protocols 0-8, 0-9, 0-91 and 0-10 when PLAIN or XOAUTH2 SASL mechanism is used. The vulnerability allows …
- CVE-2018-8030HIGHCVSS 7.5EG 7.5✓ Fixed in 7.1.02018-06-20
vulnerable: 7.0.0 ... 7.0.9 (10 versions)
A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.0.0-7.0.4 when AMQP protocols 0-8, 0-9 or 0-91 are used to publish messages with size greater than allowed maximum message size limit (100MB by default). The br…
- CVE-2019-0200HIGHCVSS 7.5EG 7.5✓ Fixed in 7.1.12019-03-06
vulnerable: 7.1.0
A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 6.0.0-7.0.6 (inclusive) and 7.1.0 which allows an unauthenticated attacker to crash the broker instance by sending specially crafted commands using AMQP protocol …
Check whether org.apache.qpid:apache-qpid-broker-j is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for org.apache.qpid:apache-qpid-broker-j CVEs against the assets you own.
Start Free Scan →