CVE-2026-21888
EUVD-2026-1119011.03.2026, 16:16
NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. MQTT v5 Variable Byte Integer parsing out-of-bounds: get_var_integer() accepts 5-byte varints without bounds checks; reliably triggers OOB read / crash when built with ASan. This affects 0.24.6 and earlier.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| emqx | nanomq | 𝑥 ≤ 0.24.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration