Denial of Service Vulnerability in Apache Qpid Broker-J Software by Apache
CVE-2026-92564

Currently unrated

Key Information:

Vendor

Apache

Vendor
CVE Published:
25 September 2026

What is CVE-2026-92564?

A pre-authentication vulnerability allows attackers to exploit type nesting in Apache Qpid Broker-J, causing a StackOverflowError. This may lead to a denial of service, impacting the application's availability. Users are advised to upgrade to version 10.1.1 or later to mitigate this risk.

Affected Version(s)

Apache Qpid Broker-J 0 <= 10.1.0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

n0mi1k
.