CVE-2026-68080
MEDIUMDescription
It was not possible to govern the rate at which the broker would respond to an echo flow, enabling an authenticated attacker to cause excessive resource usage and potential denial of service. This issue affects Apache Qpid Broker-J: through 10.0.1. Users are recommended to upgrade to version 10.1.0, which fixes the issue.
Is your site exposed to CVE-2026-68080?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
EPSS — Exploit Prediction
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
Weakness Type (CWE)
References
Frequently Asked Questions
What is CVE-2026-68080? +
How severe is CVE-2026-68080? +
How do I check if I'm vulnerable to CVE-2026-68080? +
Related Vulnerabilities
Possible External Service Interaction attack in iManager has been discovered in OpenText™ iManager 3.2.6.0000.
QTI Neon is a minimal, game-agnostic, relay-based UDP multiplayer protocol library. In version 1.0.0, the relay's handleReconnectRequest forwards RECONNECT_REQUEST packets …
An issue was discovered in Technitium through 11.0.2. The forwarding mode enables attackers to create a query loop using Technitium …
An issue was discovered in Technitium through 11.0.2. It enables attackers to launch amplification attacks (3 times more than other …
Technitium 11.5.3 allows remote attackers to cause a denial of service (bandwidth amplification) because the DNSBomb manipulation causes accumulation of …
IBM MQ 9.2 LTS, 9.3 LTS, and 9.3 CD Internet Pass-Thru could allow a remote user to cause a denial …