CVE-2026-35217 | NanoMQ up to 0.24.14 MQTT SUBSCRIBE handling out-of-bounds
A vulnerability identified as very critical has been detected in NanoMQ up to 0.24.14. The affected element is the function SUBSCRIBE handling of the component MQTT SUBSCRIBE handling. This manipulation causes out-of-bounds read.
This vulnerability appears as CVE-2026-35217. The attack may be initiated remotely. There is no available exploit.