Losant's disclosed vulnerabilities concentrate in its Arduino MQTT client library, a narrowly scoped component for IoT device connectivity. The observed weakness pattern centers on memory-safety issues, specifically improper bounds restriction and stack-based buffer overflows, which are characteristic of C/C++ implementations handling untrusted network input in resource-constrained environments. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Losant over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-17614HIGH This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Losant Arduino MQTT Client prior to V2.7. User interaction is not required to ex | Nov 13, 2018 | 8.8 | 31 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Losant.
Media articles that mention a CVE ID that affects a product developed by Losant — matched by CVE ID, not by vendor name.