https://seclists.org/oss-sec/2026/q3/419: CVE-2026-68078: Apache Qpid Broker-J: Unable to govern the maximum number of transfer frames per incoming delivery
Published Aug 4, 2026
·Updated
Affected Software
1 affected component
Apache Qpid Broker-J<=10.0.1
Frequently Asked Questions
1
What is the severity of CVE-2026-68078?
The severity of CVE-2026-68078 is classified as important.
2
What versions of Apache Qpid Broker-J are affected by CVE-2026-68078?
CVE-2026-68078 affects Apache Qpid Broker-J versions up to 10.0.1.
3
What is the main issue described in CVE-2026-68078?
CVE-2026-68078 describes the inability to govern the maximum number of transfer frames per incoming delivery.
4
How can I mitigate the risk associated with CVE-2026-68078?
To mitigate the risk of CVE-2026-68078, consider upgrading to a patched version of Apache Qpid Broker-J.
5
What potential impact does CVE-2026-68078 have?
CVE-2026-68078 allows an authenticated attacker to cause excessive resource consumption on the server.