AWS Security ChangesHomeSearch

AWS amazon-mq high security documentation change

Service: amazon-mq · 2025-11-22 · Security-related high

File: amazon-mq/latest/developer-guide/amazon-mq-release-notes.md

Summary

Added release notes for RabbitMQ 4.2 support and Graviton3 m7g instances; updated version recommendations and documentation links; fixed broken URLs; consolidated content formatting

Security assessment

The change to the March 31, 2023 entry explicitly addresses a security-related action where RabbitMQ version 3.10.17 was disabled due to a documented management console vulnerability (GitHub issue #7142). The update recommends using version 3.10.10 as a mitigation, which constitutes concrete evidence of addressing a security vulnerability.

Diff

diff --git a/amazon-mq/latest/developer-guide/amazon-mq-release-notes.md b/amazon-mq/latest/developer-guide/amazon-mq-release-notes.md
index 87cec1b6a..a776bbbc0 100644
--- a//amazon-mq/latest/developer-guide/amazon-mq-release-notes.md
+++ b//amazon-mq/latest/developer-guide/amazon-mq-release-notes.md
@@ -10,0 +11,10 @@ Date | Documentation Update
+November 20, 2025 |  Amazon MQ now supports RabbitMQ 4.2, a new major version release which introduces native support for the AMQP 1.0 protocol, a new Raft based metadata store Khepri, local shovels, and message priorities for quorum queues. RabbitMQ 4.2 also includes various bug fixes and performance improvements for throughput and memory management. While this version introduces new features, there are some breaking changes. For more information, see
+
+  * [RabbitMQ 4](./rabbitmq-4.html)
+  * [Open-source RabbitMQ release notes](https://www.rabbitmq.com/release-information)
+  * [Configuring resource limits](./configure-resource-limits.html)
+  * [Supported Protocols](./rabbitmq-supported-protocols.html)
+  * [Amazon MQ Version upgrades](./upgrading-brokers.html)
+
+  
+November 18, 2024 |  Amazon MQ now supports Graviton3 powered m7g instances for RabbitMQ in a range of sizes from medium to 16xlarge in Africa (Cape Town). For more information, see [Amazon MQ for RabbitMQ broker instance types](./rmq-broker-instance-types.html).  
@@ -124 +134 @@ For more information about supported Amazon MQ for RabbitMQ versions and broker
-March 31, 2023 |  Amazon MQ for RabbitMQ has disabled RabbitMQ engine version 3.10.17 The Amazon MQ for RabbitMQ team, and the open source maintainers of RabbitMQ, have identified an [issue with the RabbitMQ management console](https://github.com/rabbitmq/rabbitmq-server/issues/7142) on version 3.10.17. Amazon MQ has retracted this version. To mitigate the impacts of this issue, create new brokers with version 3.10.20 while we work to support a new patch version of RabbitMQ. We recommend activating the [auto minor version upgrade](https://docs.aws.amazon.com/amazon-mq/latest/developer-guide/upgrading-brokers.html#upgrading-brokers-automatic-upgrades) option to automatically get the latest bug fixes, security updates and performance enhancements. For more information on available Amazon MQ for RabbitMQ versions, see [Amazon MQ for RabbitMQ engine versions](https://docs.aws.amazon.com/amazon-mq/latest/developer-guide/rabbitmq-version-management.html).  
+March 31, 2023 |  Amazon MQ for RabbitMQ has disabled RabbitMQ engine version 3.10.17 The Amazon MQ for RabbitMQ team, and the open source maintainers of RabbitMQ, have identified an [issue with the RabbitMQ management console](https://github.com/rabbitmq/rabbitmq-server/issues/7142) on version 3.10.17. Amazon MQ has retracted this version. To mitigate the impacts of this issue, create new brokers with version 3.10.10 while we work to support a new patch version of RabbitMQ. We recommend activating the [Version upgrade](https://docs.aws.amazon.com/amazon-mq/latest/developer-guide/upgrading-brokers.html) option to automatically get the latest bug fixes, security updates and performance enhancements.  For more information on available Amazon MQ for RabbitMQ versions, see [Amazon MQ for RabbitMQ engine versions](https://docs.aws.amazon.com//amazon-mq/latest/developer-guide/rabbitmq-version-management.html).   
@@ -183 +193 @@ May 4, 2022 |  Amazon MQ adds inclusive language for `networkConnector` element
-  * [Creating and configuring an Amazon MQ network of brokers](https://docs.aws.amazon.com/amazon-mq/latest/developer-guide/amazon-mq-creating-configuring-network-of-brokers.html#creating-configuring-network-of-brokers-configure-network-connectors)
+  * [Creating and configuring an Amazon MQ network of brokers](https://docs.aws.amazon.com//amazon-mq/latest/developer-guide/amazon-mq-creating-configuring-network-of-brokers.html#creating-configuring-network-of-brokers-configure-network-connectors)
@@ -208 +218 @@ February 16, 2022 |  Amazon MQ is now available in the Africa (Cape Town) Region
-February 14, 2022 |  Amazon MQ for RabbitMQ now supports RabbitMQ version 3.9.13. [Automatic minor version upgrades](./upgrading-brokers.html#upgrading-brokers-automatic-upgrades) cannot be used to upgrade from Rabbit 3.8 to 3.9. To do so, [manually upgrade your broker](./upgrading-brokers.html#upgrading-brokers-automatic-upgrades). For more information on new features introduced in RabbitMQ 3.9, see the [release notes page for version 3.9.0](https://github.com/rabbitmq/rabbitmq-server/releases/tag/v3.9.0) on the GitHub website. 
+February 14, 2022 |  Amazon MQ for RabbitMQ now supports RabbitMQ version 3.9.13. Automatic minor version upgrades cannot be used to upgrade from Rabbit 3.8 to 3.9. To do so, [manually upgrade your broker](./upgrading-brokers.html). For more information on new features introduced in RabbitMQ 3.9, see the [release notes page for version 3.9.0](https://github.com/rabbitmq/rabbitmq-server/releases/tag/v3.9.0) on the GitHub website. 
@@ -291,6 +301,2 @@ June 7, 2021 | Amazon MQ now supports ActiveMQ 5.16.2, a new major engine versio
-May 26, 2021 |  Amazon MQ for RabbitMQ is now available in the China (Beijing) and China (Ningxia) Regions. For information on available regions, see [AWS Regions and Endpoints](https://docs.aws.amazon.com/general/latest/gr/rande.html#amazon-mq_region).  
-May 18, 2021 |  Amazon MQ for RabbitMQ implements broker defaults. When you first create a broker, Amazon MQ creates a set of broker policies and vhost limits based on the instance type and deployment mode you choose, in order to optimize the broker's performance. For more information, see the following: 
-
-  * [Amazon MQ for RabbitMQ broker defaults](./rabbitmq-defaults.html)
-
-  
+May 26, 2021 |  Amazon MQ for RabbitMQ is now available in the China (Beijing) and China (Ningxia) Regions. For information on available regions, see [AWS Regions and Endpoints](https://docs.aws.amazon.com//general/latest/gr/rande.html#amazon-mq_region).  
+May 18, 2021 |  Amazon MQ for RabbitMQ implements broker defaults. When you first create a broker, Amazon MQ creates a set of broker policies and vhost limits based on the instance type and deployment mode you choose, in order to optimize the broker's performance. For more information, see the following: <https://docs.aws.amazon.com//amazon-mq/latest/developer-guide/rabbitmq-defaults.html>  
@@ -309 +315 @@ May 5, 2021 |  Amazon MQ started tracking changes to AWS managed policies. For m
-April 14, 2021 |  Amazon MQ is now available in the China (Beijing) and China (Ningxia) Regions. For information on available regions, see [AWS Regions and Endpoints](https://docs.aws.amazon.com/general/latest/gr/rande.html#amazon-mq_region).  
+April 14, 2021 |  Amazon MQ is now available in the China (Beijing) and China (Ningxia) Regions. For information on available regions, see [AWS Regions and Endpoints](https://docs.aws.amazon.com//general/latest/gr/rande.html#amazon-mq_region).  
@@ -317 +323 @@ April 7, 2021 | Amazon MQ now supports RabbitMQ 3.8.11. For more information abo
-April 1, 2021 |  Amazon MQ is now available in the Asia Pacific (Osaka) Region. For information about available regions, see [Amazon MQ regions and endpoints](https://docs.aws.amazon.com/general/latest/gr/amazon-mq.html).  
+April 1, 2021 |  Amazon MQ is now available in the Asia Pacific (Osaka) Region. For information about available regions, see [Amazon MQ regions and endpoints](https://docs.aws.amazon.com//general/latest/gr/amazon-mq.html).  
@@ -331 +337 @@ November 4, 2020 | Amazon MQ now supports [RabbitMQ](https://www.rabbitmq.com/),
-  * The [AWS Free Tier](https://aws.amazon.com/free/) includes up to 750 hours of a single-instance `mq.t3.micro` broker and up to 20GB of storage per month for one year. For more information about supported instance types, see [Broker instance types](./broker-instance-types.html). 
+  * The [AWS Free Tier](https://aws.amazon.com//free/) includes up to 750 hours of a single-instance `mq.t3.micro` broker and up to 20GB of storage per month for one year. For more information about supported instance types, see [Broker instance types](./broker-instance-types.html). 
@@ -333 +339 @@ November 4, 2020 | Amazon MQ now supports [RabbitMQ](https://www.rabbitmq.com/),
-  * Amazon MQ for RabbitMQ is available in all regions that Amazon MQ is currently available. To learn more about all of the available regions, see the [AWS Region Table](https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/). 
+  * Amazon MQ for RabbitMQ is available in all regions that Amazon MQ is currently available. To learn more about all of the available regions, see the [AWS Region Table](https://aws.amazon.com//about-aws/global-infrastructure/regional-product-services/). 
@@ -343 +349 @@ October 22, 2020 | Amazon MQ supports ActiveMQ 5.15.13. For more information, se
-September 30, 2020 |  Amazon MQ is now available in the Europe (Milan) Region. For information about available regions, see [Amazon MQ regions and endpoints](https://docs.aws.amazon.com/general/latest/gr/amazon-mq.html).  
+September 30, 2020 |  Amazon MQ is now available in the Europe (Milan) Region. For information about available regions, see [Amazon MQ regions and endpoints](https://docs.aws.amazon.com//general/latest/gr/amazon-mq.html).