Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2980▼ 83 respecto a la semana anterior
Críticas / altas1452▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
43 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 0.33% | — | Emqx Nanomq | 14/7/2025 | 17/6/2026 | NanoMQ v0.22.10 was discovered to contain a memory leak which allows attackers to cause a Denial of Service (DoS) via a crafted PUBLISH message. | |
| Modificada | Media (6.5) | 0.36% | — | Emqx Nanomq | 14/7/2025 | 17/6/2026 | NanoMQ v0.22.10 was discovered to contain a heap overflow which allows attackers to cause a Denial of Service (DoS) via a crafted CONNECT message. | |
| Modificada | Alta (7.5) | 0.44% | — | Emqx Nanomq | 14/7/2025 | 17/6/2026 | A segmentation fault in NanoMQ v0.21.10 allows attackers to cause a Denial of Service (DoS) via crafted messages. | |
| Modificada | Alta (7.5) | 0.49% | — | Emqx Nanomq | 12/9/2024 | 17/6/2026 | An invalid read size in Nanomq v0.21.9 allows attackers to cause a Denial of Service (DoS). | |
| Analizada | Media (6.8) | 0.33% | — | Emqx Nanomq | 22/4/2024 | 17/6/2026 | A heap-buffer-overflow vulnerability in the read_byte function in NanoMQ v.0.21.7 allows attackers to cause a denial of service via transmission of crafted hexstreams. | |
| Analizada | Alta (7.5) | 0.56% | — | Emqx Nanomq | 17/4/2024 | 17/6/2026 | Null Pointer Dereference vulnerability in topic_filtern function in mqtt_parser.c in NanoMQ 0.21.7 allows attackers to cause a denial of service. | |
| Analizada | Baja (2.7) | 0.58% | — | Emqx Nanomq | 17/4/2024 | 17/6/2026 | Buffer Overflow vulnerability in the get_var_integer function in mqtt_parser.c in NanoMQ 0.21.7 allows remote attackers to cause a denial of service via a series of specially crafted hexstreams. | |
| Analizada | Media (6.5) | 0.65% | — | Emqx Nanomq | 26/2/2024 | 17/6/2026 | nanomq 0.21.2 contains a Use-After-Free vulnerability in /nanomq/nng/src/core/socket.c. | |
| Modificada | Alta (7.5) | 0.67% | — | Emqx Nanomq | 12/6/2023 | 17/6/2026 | NanoMQ 0.16.5 is vulnerable to heap-use-after-free in the nano_ctx_send function of nmq_mqtt.c. | |
| Analizada | Alta (7.8) | 0.51% | — | Emqx Nanomq | 12/6/2023 | 17/6/2026 | NanoMQ 0.17.5 has a one-byte heap-based buffer over-read in the conn_handler function of mqtt_parser.c when it processes malformed messages. | |
| Modificada | Alta (7.5) | 0.96% | — | Emqx Nanomq | 8/6/2023 | 17/6/2026 | A use-after-free vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_mqtt_msg_get_publish_property() in the file mqtt_msg.c. This vulnerability is caused by improper data tracing, and an attacker could exploit it to cause a denial of service attack. | |
| Modificada | Alta (7.5) | 1.2% | — | Emqx Nanomq | 8/6/2023 | 17/6/2026 | A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function copyn_str() in the file mqtt_parser.c. An attacker could exploit this vulnerability to cause a denial of service attack. | |
| Modificada | Alta (7.5) | 1.2% | — | Emqx Nanomq | 8/6/2023 | 17/6/2026 | A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_msg_get_pub_pid() in the file message.c. An attacker could exploit this vulnerability to cause a denial of service attack. | |
| Modificada | Alta (7.5) | 1.1% | — | Emqx Nanomq | 6/6/2023 | 17/6/2026 | A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nmq_subinfo_decode() in the file mqtt_parser.c. An attacker could exploit this vulnerability to cause a denial of service attack. | |
| Modificada | Media (5.5) | 0.38% | — | Emqx Nanomq | 30/5/2023 | 17/6/2026 | A memory leak vulnerability exists in NanoMQ 0.17.2. The vulnerability is located in the file message.c. An attacker could exploit this vulnerability to cause a denial of service attack by causing the program to consume all available memory resources. | |
| Modificada | Alta (7.5) | 0.84% | — | Emqx Nanomq | 4/5/2023 | 17/6/2026 | In NanoMQ v0.15.0-0, segment fault with Null Pointer Dereference occurs in the process of decoding subinfo_decode and unsubinfo_decode. | |
| Modificada | Alta (7.5) | 0.73% | — | Emqx Nanomq | 4/5/2023 | 17/6/2026 | In NanoMQ v0.15.0-0, a Heap overflow occurs in copyn_utf8_str function of mqtt_parser.c | |
| Modificada | Alta (7.5) | 0.73% | — | Emqx Nanomq | 4/5/2023 | 17/6/2026 | In NanoMQ v0.15.0-0, Heap overflow occurs in read_byte function of mqtt_code.c. |