SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-36590

HIGH · CVSS 7.5 EPSS 0.40% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-15 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

EMQ NanoMQ version 0.24.9 is vulnerable to a denial of service attack due to a flaw in the nni_qos_db_set function within the broker_tcp.c component. This vulnerability allows remote attackers to disrupt service availability, potentially affecting any applications relying on this messaging broker. Organizations utilizing EMQ NanoMQ should prioritize patching or mitigating this issue to safeguard their systems against potential disruptions.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-36590
Severity
HIGH
CVSS
7.5
EPSS
0.40%

Original NVD Description

An issue in EMQ NanoMQ v.0.24.9 allows a remote attacker to cause a denial of service via the nni_qos_db_set function in broker_tcp.c component

Related CVEs

Other vulnerabilities affecting the same vendor(s)