CVE-2026-67405 | RabbitMQ up to 3.13.14/4.0.19/4.1.10/4.2.5 MQTT rabbit_web_mqtt_handler.erl Origin certificate validation

SecurityVulns

A vulnerability identified as problematic has been detected in RabbitMQ up to 3.13.14/4.0.19/4.1.10/4.2.5. The impacted element is an unknown function of the file deps/rabbitmq_web_mqtt/src/rabbit_web_mqtt_handler.erl of the component MQTT Handler. The manipulation of the argument Origin leads to improper certificate validation.

This vulnerability is traded as CVE-2026-67405. It is possible to initiate the attack remotely. There is no exploit available.

You should upgrade the affected component.VulDB Recent EntriesRead More