📦 Mosquitto

by Eclipse

🔍 What is Mosquitto?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-10525

CRITICAL CVSS 9.8 Oct 30, 2024

This vulnerability allows a malicious MQTT broker to crash or potentially execute arbitrary code on clients using libmosquitto by sending a specially crafted SUBACK packet with no reason codes. It aff...

CVE-2024-8376

HIGH CVSS 7.5 Oct 11, 2024

This vulnerability in Eclipse Mosquitto allows attackers to cause memory corruption through specific MQTT packet sequences, potentially leading to crashes or remote code execution. It affects all depl...

CVE-2023-5632

HIGH CVSS 7.5 Oct 18, 2023

This vulnerability in Eclipse Mosquitto allows denial-of-service attacks by establishing connections without sending data, causing excessive CPU consumption through EPOLLOUT events. It affects all use...

CVE-2021-34432

HIGH CVSS 7.5 Jul 27, 2021

This vulnerability allows remote attackers to crash Eclipse Mosquitto MQTT broker servers by sending a specially crafted PUBLISH packet with zero-length topic. All systems running vulnerable versions ...