CVE-2023-33660: Emqx Nanomq

High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.

A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function copyn_str() in the file mqtt_parser.c. An attacker could exploit this vulnerability to cause a denial of service attack.

Affected products

  • Emqx Nanomq: version 0.17.2 only

Published 2023-06-08. Last modified 2026-06-17.