← Back

CVE-2026-59320

nvd nist
Published: Aug 27, 2026Modified: Aug 31, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: security@vmware.com (Secondary)

Description

When a container-level ErrorHandler is configured (the mitigation for finding 221000), each delivery whose processing throws still permanently consumes one link credit. After initialCredits (default 100) failing messages the receiver's credit reaches zero and the broker stops delivering, leaving the listener silently stalled while isRunning() remains true. Spring AMQP 4.1.0

Affected (1)

1 product
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 4.1.0 to 4.1.1

References (1)

Source: security@vmware.com
Vendor Advisory

Timeline

No history available yet.