Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Emqx

First CVE: Jun 8, 2021Active for: 5 yearsTotal CVEs: 41
37.9
VTI Score
Medium

Emqx develops a focused set of message-oriented middleware and IoT connectivity products—including EMQX, NanoMQ, Neuron, and CocoaMQTT—that serve as message brokers and protocol bridges for distributed systems and edge deployments. While the product line remains narrow, these components occupy a prominent role in IoT and real-time messaging architectures where they handle untrusted network input and manage memory-intensive connection state. The vulnerability profile reflects the memory-safety demands inherent to these systems: recurrent exposure centers on buffer-overflow conditions, out-of-bounds read and write operations, and use-after-free flaws that arise from parsing and session-management complexity. A meaningful share of disclosed vulnerabilities reach serious severity, consistent with the remote-accessible nature of message brokers. Defenders should monitor this vendor's releases closely for deployments exposed to external networks or handling sensitive IoT data; current exploitation activity and severity counts are shown alongside this summary.

FAUCET AI Generated
41
Total CVEs
More Total CVEs than 98% of tracked vendors
1.4
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 76% of tracked vendors
6.9
Avg CVSS Score
Higher Avg CVSS Score than 49% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Emqx over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 8, 2021
5 years ago
Most Recent CVE
Jul 15, 2026
9 days ago

Products(5 total)

Top CVEs

Signals from CVEs in this vendor scope (41 CVEs).

41 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-36590HIGH
An issue in EMQ NanoMQ v.0.24.9 allows a remote attacker to cause a denial of service via the nni_qos_db_set function in broker_tcp.c component
Jul 15, 20267.532NONO
CVE-2026-34608HIGH
NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. Prior to version 0.24.10, in NanoMQ's webhook_inproc.c, the hook_work_cb() function processes nng messages by
Apr 2, 20268.230NONO
CVE-2026-32696HIGH
NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. In NanoMQ version 0.24.6, after enabling auth.http_auth (HTTP authentication), when a client connects to the b
Mar 30, 20267.529NONO
CVE-2024-10964CRITICAL
A vulnerability classified as critical has been found in emqx neuron up to 2.10.0. Affected is the function handle_add_plugin in the library cmd.library of the file plugins/restful
Nov 7, 20249.829NONO
CVE-2024-48077HIGH
NanoMQ v0.22.7 is vulnerable to Denial of Service (DoS) due to improper resource throttling. A crafted sequence of requests causes the recv-q queue to saturate, leading to the rapi
Jan 15, 20267.528NONO
CVE-2025-59947CRITICAL
NanoMQ is a messaging broker/bus for IoT Edge & SDV. Versions prior to 0.24.4 have a buffer overflow case while the PUBLISH packets trigger both shared subscription and vanila subs
Dec 15, 20259.028NONO
CVE-2024-42655HIGH
An access control issue in NanoMQ v0.21.10 allows attackers to bypass security restrictions and access sensitive system topic messages using MQTT wildcard characters.
Jul 29, 20258.828NONO
CVE-2026-32135HIGH
NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. Versions prior to 0.24.11 have a remotely triggerable heap buffer overflow in the `uri_param_parse` function o
Apr 20, 20267.525NONO
CVE-2026-21888HIGH
NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. MQTT v5 Variable Byte Integer parsing out-of-bounds: get_var_integer() accepts 5-byte varints without bounds c
Mar 11, 20267.525NONO
CVE-2025-59946HIGH
NanoMQ MQTT Broker (NanoMQ) is an Edge Messaging Platform. Prior to version 0.24.2, there is a classical data racing issue about sub info list which could result in heap use after
Dec 27, 20257.525NONO
View all 41 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products41 CVEs
29%
59%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (4.9%)
Network39 (95.1%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low37 (90.2%)
High4 (9.8%)
Unknown0 (0.0%)
User Interaction
None32 (78.0%)
Unknown0 (0.0%)
Required9 (22.0%)
Privileges Required
Low8 (19.5%)
High3 (7.3%)
None30 (73.2%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (41 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Emqx.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Emqx — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Emqx's Products

View all 4 CNAs →

Top CWEs