Feed/CVE-2026-41701
CVE-2026-41701MEDIUMCVSS 4.4

CVE-2026-41701

Published Jun 9, 2026·Updated Aug 12, 2026

NVD Description

Correlation IDs for replies in the RabbitTemplate.sendAndReceive() with the fixed reply queue are predictable due to internal simple counter. Affected versions: Spring AMQP 4.0.0 through 4.0.3; 3.2.0 through 3.2.10; 3.1.0 through 3.1.15; 2.4.0 through 2.4.17.

Affected Packages (1)

org.springframework.amqp:spring-amqpMAVEN
From 4.0.0
Fixed in = 4.0.3

CVSS Vector

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free