CVE-2026-59271

When the RabbitMQ management aliveness check fails, the configured admin password is embedded in cleartext in the thrown exception message. Spring AMQP 4.1.0 Spring AMQP 4.0.0 - 4.0.4 Spring AMQP 3.2.0 - 3.2.12 Spring AMQP 2.4.18 and earlier
References
Link Resource
https://spring.io/security/cve-2026-59271 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:vmware:spring_advanced_message_queuing_protocol:*:*:*:*:*:*:*:*
cpe:2.3:a:vmware:spring_advanced_message_queuing_protocol:*:*:*:*:*:*:*:*
cpe:2.3:a:vmware:spring_advanced_message_queuing_protocol:*:*:*:*:*:*:*:*
cpe:2.3:a:vmware:spring_advanced_message_queuing_protocol:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-08-27 06:17

Updated : 2026-09-01 18:29


NVD link : CVE-2026-59271

Mitre link : CVE-2026-59271

CVE.ORG link : CVE-2026-59271


JSON object : View

Products Affected

vmware

  • spring_advanced_message_queuing_protocol
CWE
CWE-209

Generation of Error Message Containing Sensitive Information