Vulnerability disclosures
Security research,
responsibly disclosed
Public CVEs discovered by Cantina's autonomous AppSec agents and responsibly disclosed to affected vendors.
How Cantina finds vulnerabilitiesSwipe severity filters · use Product and Sort to narrow results
24 results
Disclosure library
Showing 24 of 24 verified disclosures
Product / CVE Finding CVSS Severity Disclosed
4 findings
RabbitMQ CVE-2026-57218 OAuth consumers retain access after token expiry CWE-863 CVSS 4.9 Medium RabbitMQ CVE-2026-57217 Topic permissions fail open during metadata errors CWE-755 CVSS 7.0 High RabbitMQ CVE-2026-57216 Proxy handling bypasses loopback-only authentication CWE-290 CVSS 6.8 Medium RabbitMQ CVE-2026-57215 Direct-reply-to bindings enable cross-tenant injection CWE-863 CVSS 7.0 High
3 findings
1 finding
1 finding
2 findings
1 finding
2 findings
2 findings
No disclosures match these filters
Try a broader search or select another severity.
See what Cantina's autonomous AppSec agents find in your environment
Move from exploit path to a human-verified finding your team can act on.