Apache Qpid Broker-J是美国Apache基金会开源的一款消息代理软件。 Apache Qpid Broker-J 10.0.1及之前版本存在资源管理错误漏洞,该漏洞源于未限制的符号值缓存,可能导致资源耗尽和拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache Qpid Broker-J | ≤ 10.0.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache Qpid Broker-J | 0 ~ 10.0.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-68077 | Apache Qpid Broker-J: Unbounded disposition range handling can lead to denial of service | |
| CVE-2026-60053 | Apache Answer: Residual Administrative API Key Access After Role or Account Revocation | |
| CVE-2026-60023 | Apache Answer: Unauthorized disclosure of deleted or pending answer content | |
| CVE-2026-50749 | Apache Answer: Missing authorization in revision audit reject allows authenticated users t | |
| CVE-2026-48912 | Apache Answer: Improper authorization in avatar update cleanup allows authenticated users | |
| CVE-2026-48911 | Apache Answer: Unauthenticated OAuth Email-Binding Account Takeover via Existing User Conf | |
| CVE-2026-48834 | Apache Answer: Denial of service via crafted Accept-Language header parsing | |
| CVE-2026-61486 | Apache Lucy: stack-buffer-overflow in JSON parser error reporter on malformed input | |
| CVE-2026-61484 | Apache Lucy: LucyX::Remote::SearchServer unauthenticated remote Storable::thaw -> RCE/DoS | |
| CVE-2026-61483 | Apache Lucy: QueryParser unbounded recursion on deeply-nested query -> C-stack-overflow Do | |
| CVE-2026-68080 | Apache Qpid Broker-J: Unbounded echo flow responses can lead to denial of service | |
| CVE-2026-67592 | Apache Qpid ProtonJ2: Unable to govern the maximum number of transfer frames per incoming | |
| CVE-2026-67555 | Apache Qpid Proton Dotnet: Unable to govern the maximum number of transfer frames per inco | |
| CVE-2026-68078 | Apache Qpid Broker-J: Unable to govern the maximum number of transfer frames per incoming | |
| CVE-2026-66277 | Apache Qpid Proton-J: Unable to govern the maximum number of transfer frames per incoming | |
| CVE-2026-67554 | Apache Qpid Proton Dotnet: Unbounded disposition range handling can lead to denial of serv | |
| CVE-2026-66257 | Apache Qpid Proton-J: Unbounded symbol value caching can lead to pre-authentication resour | |
| CVE-2026-66276 | Apache Qpid Proton-J: Unbounded disposition range handling can lead to denial of service | |
| CVE-2026-67591 | Apache Qpid ProtonJ2: Incoming session flow control window can be exceeded | |
| CVE-2026-67553 | Apache Qpid Proton Dotnet: Incoming session flow control window can be exceeded |
Showing top 20 of 33 CVEs. View all on vendor page → →
No comments yet