AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-12546

MEDIUM · CVSS 6.5 EPSS 0.80%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-03-27 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-12546
Severity
MEDIUM
CVSS
6.5
EPSS
0.80%

Original NVD Description

In Eclipse Mosquitto version 1.0 to 1.5.5 (inclusive) when a client publishes a retained message to a topic, then has its access to that topic revoked, the retained message will still be published to clients that subscribe to that topic in the future. In some applications this may result in clients being able cause effects that would otherwise not be allowed.