CNNVD-202508-853 Information

CNNVD ID

CNNVD-202508-853

CVE-2025-52136

  • CNNVD Published: 2025-08-10

Description (Chinese)

EMQX是EMQX公司的一个MQTT消息服务器。 EMQX 5.8.6之前版本存在代码问题漏洞,该漏洞源于Dashboard界面允许安装任意插件,可能导致安全风险。

Description (English)

EEMQX is a MQTT news server for EEMQX. There was a code gap in the previous version of EMQX 5.8.6, which stemmed from the fact that the Dashboard interface allowed the installation of any plug-in, which could lead to security risks.

Hazard Level

Critical

Vulnerability Type

代码问题

Affected Vendor

EMQX

Published

2025-08-10

Last Modified

2026-02-24

References

https://github.com/ricardojoserf/emqx-RCE https://docs.emqx.com/en/emqx/latest/deploy/install-docker.html https://docs.emqx.com/en/emqx/latest/dashboard/introduction.html https://access.redhat.com/security/cve/cve-2025-52136

Share on: