
CVE-2026-25768 LavinMQ is a high-performance message queue & streaming server. Before 2.6.6, an authenticated user could access metadata in the broker they should not have access to… https://www.cve.org/CVERecord?id=CVE-2026-25768
Post summary
CVE-2026-25768 reveals that authenticated users of LavinMQ before version 2.6.6 can read broker metadata they should not access.
