USN-7143-1
Dashboard / Vulnerabilities / USN-7143-1
USN-7143-1
Summary: rabbitmq-server vulnerabilities
Details: Christian Rellmann discovered that RabbitMQ Server did not properly sanitize user input when adding a new user via the management UI. An attacker could possibly use this issue to perform cross site scripting and obtain sensitive information. (CVE-2021-32718) Fahimhusain Raydurg discovered that RabbitMQ Server did not properly sanitize user input when using the federation management plugin. An attacker could possibly use this issue to perform cross site scripting and obtain sensitive information. (CVE-2021-32719)
References: https://ubuntu.com/security/notices/USN-7143-1, https://ubuntu.com/security/CVE-2021-32718, https://ubuntu.com/security/CVE-2021-32719
Affected packages
Package
Name: rabbitmq-server
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=focal
Affected ranges
Type: ECOSYSTEM
Events:
