Vulnerabilities
Report: Breaking: CVE-2026-32696 - NanoMQ HTTP Auth: Missing username/password can trigger a NULL-pointer strlen() ...
CVE ID :CVE-2026-32696 Published : March 30, 2026, 9:17 p.m. | 14 minutes ago Description :NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. In NanoMQ version 0.24.6, after enabling auth.http_auth (HTTP authentication), when a client connects to the broker using MQTT CONNECT without providing username/password, and the configuration params uses the placeholders %u / %P (e.g., username=
CVE Details
CVE ID
Published
March 30, 2026