Vulnerabilities > Eclipse > Mosquitto > 1.5.5

DATE CVE VULNERABILITY TITLE RISK
2019-03-27 CVE-2018-12546 Incorrect Permission Assignment for Critical Resource vulnerability in Eclipse Mosquitto
In Eclipse Mosquitto version 1.0 to 1.5.5 (inclusive) when a client publishes a retained message to a topic, then has its access to that topic revoked, the retained message will still be published to clients that subscribe to that topic in the future.
network
low complexity
eclipse CWE-732
6.5