CVE-2025-59947
NanoMQ is a messaging broker/bus for IoT Edge & SDV. Versions prior to 0.24.4 have a buffer overflow case while the PUBL
NanoMQ is a messaging broker/bus for IoT Edge & SDV. Versions prior to 0.24.4 have a buffer overflow case while the PUBLISH packets trigger both shared subscription and vanila subscription. This is fixed in version 0.24.4.
As a workaround, disable shared subscription.
CRITICAL · CVSS 9
EPSS 0.00042
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0