Uploaded image for project: 'AMQ Streams'
  1. AMQ Streams
  2. ENTMQST-7000

CVE-2025-27819 Kafka Clients Vulnerabiliy [amq-st-3.1]

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Won't Do
    • Icon: Undefined Undefined
    • None
    • 3.1.0.GA
    • None
    • None

      In CVE-2025-27819, Apache Kafka brokers were found to be vulnerable to Remote Code Execution (RCE) and Denial of Service attacks through SASL JAAS JndiLoginModule configuration. This vulnerability is an extension of the previously reported CVE-2023-25194, which initially only identified the vulnerability in Kafka Connect API. 

              Unassigned Unassigned
              rh-ee-ocorriga Owen Corrigan
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: