Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-92609

Session fixation in HTTP management authentication allows remoteĀ attackers to gain unauthorized access to an authenticated management session via reuse of a session identifier retained across successful authentication. This issue affects Apache Qpid Broker-J: through 10.1.0. Users are recommended to upgrade to version 10.1.1, which fixes the issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 29.6%
CVSS Severity
CVSS v3 Score 9.8


Contact Us

Shodan ® - All rights reserved