#VU126620 Heap-based buffer overflow in NanoMQ - CVE-2026-32135
Published: April 21, 2026
NanoMQ
NanoMQ
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the uri_param_parse function. A remote attacker can pass specially crafted data to the application, trigger a heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.