CVE-2024-42655: Emqx Nanomq

High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.

An access control issue in NanoMQ v0.21.10 allows attackers to bypass security restrictions and access sensitive system topic messages using MQTT wildcard characters.

Affected products

  • Emqx Nanomq: version 0.21.8 only

Published 2025-07-29. Last modified 2026-06-17.