CVE-2026-67409 | VMware RabbitMQ up to 4.3.2 JWKS Fetch uaajwt.erl return value
A vulnerability marked as problematic has been reported in VMware RabbitMQ up to 3.13.17/4.0.22/4.1.13/4.2.8/4.3.2. The impacted element is an unknown function of the file deps/rabbitmqauthbackendoauth2/src/uaajwt.erl of the component JWKS Fetch. The manipulation leads to unchecked return value.
This vulnerability is documented as CVE-2026-67409. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More