Vulnerabilities
Summary — last 7 days
New vulnerabilities2,770▲ 14 vs. last week
Critical / high1,475▲ 292 vs. last week
New active exploitation (KEV)5▼ 5 vs. last week
Unscored (no CVSS)68▼ 447 vs. last week
8 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Awaiting Analysis | High (8.7) | 0.55% | — | Rabbitmq Java Client LibraryAI | 9/16/2026 | 9/24/2026 | The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.34.0, AMQConnection.start() applies Math.min(maxInboundMessageBodySize, frameMax) after Connection.Tune negotiation even though AMQP defines frameMax value zero as unlimited and… | |
| Awaiting Analysis | High (8.7) | 0.73% | — | Rabbitmq Java Client LibraryAI | 8/18/2026 | 9/10/2026 | The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.1, src/main/java/com/rabbitmq/client/impl/ValueReader.java permits ValueReader.readTable and ValueReader.readArray to call ValueReader.readFieldValue recursively for AMQP table type F… | |
| Awaiting Analysis | Medium (5.1) | 0.31% | — | Rabbitmq Java Client LibraryAI | 8/18/2026 | 9/10/2026 | The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.0, com.rabbitmq.client.ConnectionFactory.useSslProtocol() and ConnectionFactory.useSslProtocol(String) configure com.rabbitmq.client.TrustEverythingTrustManager and leave hostname… | |
| Awaiting Analysis | Medium (6.3) | 0.52% | — | Rabbitmq Java Client LibraryAI | 8/18/2026 | 9/10/2026 | The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.31.0, inbound AMQP command assembly in src/main/java/com/rabbitmq/client/impl/CommandAssembler.java processes a content-bearing method and header whose remainingBodyBytes value is smaller… | |
| Awaiting Analysis | None (0) | 0.49% | — | Rabbitmq Java Client LibraryAI | 8/18/2026 | 9/10/2026 | The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.0, the AMQP connection tuning path records the negotiated AMQP frame_max value, but src/main/java/com/rabbitmq/client/impl/SocketFrameHandler.java and NettyFrameHandlerFactory continue… | |
| Awaiting Analysis | High (8.7) | 0.73% | — | Rabbitmq Java Client LibraryAI | 8/18/2026 | 9/18/2026 | The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.1, src/main/java/com/rabbitmq/client/impl/ValueReader.java uses ValueReader.readBytes to accept a wire-declared contentLength below Integer.MAX_VALUE and allocate a byte array before… | |
| Awaiting Analysis | High (7.5) | 0.56% | — | Rabbitmq Java Client LibraryAI | 8/18/2026 | 9/18/2026 | The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.0, com.rabbitmq.tools.jsonrpc.ProcedureDescription receives a javaReturnType value in an untrusted system.describe response and passes it through JSONUtil.tryFill, setJavaReturnType,… | |
| Awaiting Analysis | Low (2.4) | 0.35% | — | Kubernetes Java Client LibraryAI | 7/23/2026 | 7/23/2026 | A security issue was discovered in the Kubernetes Java client library where a compromised pod may be able to create new files in arbitrary locations on the client machine executing copy operations via non-tar copyDirectoryFromPod when enableTarCompressing is false. |