Improper Handling of Property-Encoding Exceptions in Apache Qpid Broker-J
CVE-2026-92608

Currently unrated

Key Information:

Vendor

Apache

Vendor
CVE Published:
25 September 2026

What is CVE-2026-92608?

The vulnerability involves improper handling of property-encoding exceptions during the conversion of messages from AMQP 1.0 to AMQP 0-10. This flaw allows authenticated message producers to intentionally disrupt the message delivery process to AMQP 0-10 consumers by exploiting message properties that are not handled correctly by the target encoder. This poses a risk of service disruption for users relying on the affected version of Apache Qpid Broker-J. It is recommended to upgrade to version 10.1.1 to mitigate this issue.

Affected Version(s)

Apache Qpid Broker-J 0 <= 10.1.0

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

n0mi1k
.