Threats Tagged 'cve-2026-67231'
View all threats tagged with 'cve-2026-67231'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-67231'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-67231 is a critical vulnerability in rabbitmq-server affecting versions prior to 3.13.15, 4.0.20, 4.1.11, and 4.2.6. The issue arises from improper certificate validation in the trust-store plugin, which overrides certain bad certificate errors when a presented certificate matches a whitelisted certificate based only on issuer name and serial number. This allows an attacker who knows or can guess the issuer DN and serial number of a whitelisted certificate to bypass TLS client authentication by presenting a forged self-signed certificate. The vulnerability requires the rabbitmq_trust_store plugin to be enabled and used as the TLS verify function. Fixed versions have been released to address this issue. Join the discussion | CVE Database V5 | 09/23/2026, 20:47:36 UTC Added: 09/24/2026, 01:57:13 UTC |
Showing 1 to 1 of 1 result