Vulnerability intelligence
CVE-2026-92560
A pre-authentication attacker could leverage type size/count handling to cause excessive allocation leading to potential denial of service. This issue affects Apache Qpid Broker-J: through 10.1.0. Users are recommended to upgrade to version 10.1.1, which fixes the issue.
CVSS Score
7.5
High
EPSS — Exploit Probability
0.2%
Riskier than 8% of all CVEs · checked 2026-09-25
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
unknown
Check vendor advisories
1 article across 1 outlet · first covered Sep 25, 2026 · latest Sep 25, 2026
Coverage timeline
-
Apache Qpid Broker-J Fixes Six Flaws, Including Critical Session Bugsecurityonline.info · Sep 25, 2026