Pivotal Spring AMQP, 1.x versions before 1.7.10 and 2.x versions before 2.0.6, expose a man-in-the-middle vulnerability due to lack of hostname validation. A malicious user that has the ability to intercept traffic would be able to view data in transit.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
pivotal software spring advanced message queuing protocol |
||
pivotal software rabbitmq |