CVE-2026-36590: High severity EMQ NanoMQ vulnerability
Published Jul 15, 2026
·Updated
An issue in EMQ NanoMQ v.0.24.9 allows a remote attacker to cause a denial of service via the nniqosdbset function in brokertcp.c component
Affected Software
2 affected components
EMQ NanoMQ=0.24.9
emqx Nanomq=0.24.9
Event History
Jul 15, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-36590?
The severity of CVE-2026-36590 is classified as high with a CVSS score of 7.5.
2
How can I fix CVE-2026-36590?
To fix CVE-2026-36590, it is recommended to update to the latest version of EMQ NanoMQ that addresses this vulnerability.
3
What impact does CVE-2026-36590 have on my system?
CVE-2026-36590 allows a remote attacker to cause a denial of service in the EMQ NanoMQ software.
4
Which component is affected by CVE-2026-36590?
CVE-2026-36590 affects the nni_qos_db_set function in the broker_tcp.c component of EMQ NanoMQ.
5
When was CVE-2026-36590 published?
CVE-2026-36590 was published on July 15, 2026.