CVE-2026-36590: Emqx Nanomq

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue in EMQ NanoMQ v.0.24.9 allows a remote attacker to cause a denial of service via the nni_qos_db_set function in broker_tcp.c component

Affected products

  • Emqx Nanomq: version 0.24.9 only

Published 2026-07-15. Last modified 2026-07-16.