Sploitus

CVE-2026-57221

No indexed exploits for CVE-2026-57221 yet

RabbitMQ is a messaging and streaming broker. Prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6, RabbitMQ does not perform authorization checks on passive queue.declare and exchange.declare AMQP 0-9-1 operations, allowing any authenticated user who can connect to a virtual host to enumerate queue and exchange names and read queue message and consumer counts. This issue is fixed in versions 3.13.15, 4.0.20, 4.1.11, and 4.2.6.

Affected products
Rabbitmq
Broadcom Rabbitmq Server
< 4.2.6
Fix
Available
CVSS 4.0
5.3 MEDIUM
CVSS 3.1
5.0 MEDIUM
EPSS
0.5% (39th percentile)
Weakness
CWE-862
NVD status
Analyzed
Published
2026-07-10
CVE-2026-57221 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-57221 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-57221 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.