Pubnub provides a real-time messaging and communication platform with SDKs spanning multiple languages including C, Kotlin, and Swift, serving applications that require pub/sub messaging infrastructure. The vendor's limited vulnerability signal has centered on cryptographic-randomness weaknesses affecting its core libraries, a characteristic flaw class in communication platforms where entropy quality directly impacts session and message security. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pubnub over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-26154MEDIUM Versions of the package pubnub before 7.4.0; all versions of the package com.pubnub:pubnub; versions of the package pubnub before 6.19.0; all versions of the package github.com/pub | Dec 6, 2023 | 5.9 | 19 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pubnub.
Media articles that mention a CVE ID that affects a product developed by Pubnub — matched by CVE ID, not by vendor name.