Product Release Advisory - Open Source RabbitMQ 4.0.21
Security Advisory
|
Advisory ID: |
TNZ-2026-0333 |
|
Severity: |
[High] |
|
Issue Date: |
2026-06-24 |
|
Updated on: |
2026-07-23 |
|
Synopsis |
RabbitMQ topic authorization allows restricted topic operations during metadata-store failures due to error collapsing in topic-permission lookup handling. CVE-2026-57217 (high) |
Patched Versions
- Open Source RabbitMQ 4.0.21
Product Versions Affected
- Open Source RabbitMQ >= 4.0.0, < 4.0.21
Other Products Versions Affected
- VMware Tanzu RabbitMQ >= 4.0.0, < 4.0.21
- VMware Tanzu RabbitMQ on Kubernetes >= 4.0.0, < 4.0.21
History
2026-07-14: Initial vulnerability report published.
Contact
E-mail: [email protected]
VMware Tanzu Security Advisories