org.apache.qpid:apache-qpid-broker-j
Maven3 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting org.apache.qpid:apache-qpid-broker-jpage 1 of 1
- CVE-2018-1298MEDIUMCVSS 5.9EG 5.9fixed in 7.0.12018-02-09
vulnerable: 7.0.0
A Denial of Service vulnerability was found in Apache Qpid Broker-J 7.0.0 in functionality for authentication of connections for AMQP protocols 0-8, 0-9, 0-91 and 0-10 when PLAIN or XOAUTH2 SASL mechanism is used. The vulnerability allows …
- CVE-2018-8030HIGHCVSS 7.5EG 7.5fixed in 7.1.02018-06-20
vulnerable: 7.0.0 ... 7.0.9 (10 versions)
A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.0.0-7.0.4 when AMQP protocols 0-8, 0-9 or 0-91 are used to publish messages with size greater than allowed maximum message size limit (100MB by default). The br…
- CVE-2019-0200HIGHCVSS 7.5EG 7.5fixed in 7.0.7 or 7.1.1, by version range2019-03-06
vulnerable: 7.1.0
A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 6.0.0-7.0.6 (inclusive) and 7.1.0 which allows an unauthenticated attacker to crash the broker instance by sending specially crafted commands using AMQP protocol …
Check whether org.apache.qpid:apache-qpid-broker-j is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for org.apache.qpid:apache-qpid-broker-j CVEs against the assets you own.
Book a Demo →