CVE-2024-42655 Information

Description

An access control issue in NanoMQ v0.21.10 allows attackers to bypass security restrictions and access sensitive system topic messages using MQTT wildcard characters.

Reference

https://github.com/nanomq/nanomq https://github.com/nanomq/nanomq/issues/1782#issuecomment-2171025812 https://github.com/songxpu/bug_report/blob/master/MQTT/NanoMQ/CVE-2024-42655.md

CNNVD-202507-3644 (Published: 2025-07-29)

Share on: