Vulnerabilities > Redhat > AMQ Online

DATE CVE VULNERABILITY TITLE RISK
2022-09-13 CVE-2022-1278 Insecure Default Initialization of Resource vulnerability in Redhat products
A flaw was found in WildFly, where an attacker can see deployment names, endpoints, and any other data the trace payload may contain.
network
low complexity
redhat CWE-1188
7.5
2020-09-16 CVE-2020-14348 Improper Check for Unusual or Exceptional Conditions vulnerability in Redhat AMQ Online
It was found in AMQ Online before 1.5.2 that injecting an invalid field to a user's AddressSpace configuration of the user namespace puts AMQ Online in an inconsistent state, where the AMQ Online components do not operate properly, such as the failure of provisioning and the failure of creating addresses, though this does not impact upon already existing messaging clients or brokers.
network
low complexity
redhat CWE-754
4.0
2020-08-03 CVE-2020-14319 Cross-Site Request Forgery (CSRF) vulnerability in Redhat AMQ Online and Enmasse
It was found that the AMQ Online console is vulnerable to a Cross-Site Request Forgery (CSRF) which is exploitable in cases where preflight checks are not instigated or bypassed.
network
high complexity
redhat CWE-352
4.0