Known Vulnerabilities for Rocketmq by Apache
Listed below are 3 of the newest known vulnerabilities associated with "Rocketmq" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-37582 json | The RocketMQ NameServer component still has a remote command execution vulnerability as the CVE-2023-33246 issue was not comp... | 9.8 - CRITICAL | 2023-07-12 | 2023-07-20 |
| CVE-2023-33246 json | For RocketMQ versions 5.1.0 and below, under certain conditions, there is a risk of remote command execution. Several comp... | 9.8 - CRITICAL | 2023-05-24 | 2023-07-12 |
| CVE-2019-17572 json | In Apache RocketMQ 4.2.0 to 4.6.0, when the automatic topic creation in the broker is turned on by default, an evil topic lik... | 5.3 - MEDIUM | 2020-05-14 | 2020-05-15 |