CVE-2026-67410 | RabbitMQ up to 4.2.8/4.3.2 OAuth2 Authentication rabbitmgmtoauthbootstrap.erl oauthclientsecret information disclosure
A vulnerability, which was classified as problematic, has been found in RabbitMQ up to 4.2.8/4.3.2. The affected element is an unknown function of the file deps/rabbitmqmanagement/src/rabbitmgmtoauthbootstrap.erl of the component OAuth2 Authentication. This manipulation of the argument oauthclientsecret causes information disclosure.
This vulnerability appears as CVE-2026-67410. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More