CVE-2023-33658: Emqx Nanomq

High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.

A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_msg_get_pub_pid() in the file message.c. An attacker could exploit this vulnerability to cause a denial of service attack.

Affected products

  • Emqx Nanomq: version 0.17.2 only

Published 2023-06-08. Last modified 2026-06-17.