Apache Qpid Broker-j
19 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Apache Qpid Broker-j, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
Apache Qpid Broker-j CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 7 |
| 2026-09 | 6 |
Severity
How the 19 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical2
- High10
- Medium6
Latest CVEs
The 15 most recently published vulnerabilities affecting Apache Qpid Broker-j.
- CVE-2026-92550Apache Qpid Broker-J: Type size/count handling can lead to excessive allocation pre-authentication in the AMQP 0-8/0-9/0-9-1 decoder7.5
- CVE-2026-92560Apache Qpid Broker-J: Type size/count handling can lead to excessive allocation pre-authentication in the AMQP 0-10 decoder7.5
- CVE-2026-92573Apache Qpid Broker-J: Uncontrolled resource consumption during AMQP delivery decompression, message conversion and HTTP management JSON rendering6.5
- CVE-2026-92564Apache Qpid Broker-J: Unbounded type nesting can lead to stack overflow pre-authentication in AMQP 0-8/0-9/0-9-1 field-table processing—
- CVE-2026-92608Apache Qpid Broker-J: Incomplete property conversion handling from AMQP 1.0 to AMQP 0-107.5
- CVE-2026-92609Apache Qpid Broker-J: Missing HTTP-session renewal after successful authentication9.8
- CVE-2026-68080Apache Qpid Broker-J: Unbounded echo flow responses can lead to denial of service6.5
- CVE-2026-68078Apache Qpid Broker-J: Unable to govern the maximum number of transfer frames per incoming delivery6.5
- CVE-2026-68077Apache Qpid Broker-J: Unbounded disposition range handling can lead to denial of service6.5
- CVE-2026-68075Apache Qpid Broker-J: Incoming session flow control window can be exceeded6.5
- CVE-2026-68073Apache Qpid Broker-J: Unbounded type nesting can lead to pre-authentication stack overflow7.5
- CVE-2026-68060Apache Qpid Broker-J: Type size/count handling can lead to excessive allocation pre-authentication7.5
- CVE-2026-68074Apache Qpid Broker-J: Unbounded symbol value caching can lead to pre-authentication resource exhaustion7.5
- CVE-2019-0200A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 6.0.0-7.0.6 (inclusive) and 7.1.0 which allows an unauthenticated attacker to crash the broker instance by sending speci...7.5
- CVE-2018-8030A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.0.0-7.0.4 when AMQP protocols 0-8, 0-9 or 0-91 are used to publish messages with size greater than allowed maximum mes...7.5
Product grouping is registry-driven, with AI assist and human review. How it works