Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-58213

Опубликовано: 08 июл. 2026
Источник: nvd
CVSS3: 7.1
EPSS Низкий

Описание

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.1 and 2.12.9, an MQTT client could include protocol control characters in subscription filters that were later forwarded as NATS protocol data to route or leafnode connections, corrupting the forwarded protocol stream and allowing injection of unintended NATS protocol operations. This issue is fixed in versions 2.14.1 and 2.12.9.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:linuxfoundation:nats-server:*:*:*:*:*:*:*:*
Версия до 2.12.9 (исключая)
cpe:2.3:a:linuxfoundation:nats-server:*:*:*:*:*:*:*:*
Версия от 2.14.0 (включая) до 2.14.1 (исключая)

EPSS

Процентиль: 25%
0.00324
Низкий

7.1 High

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 7.1
ubuntu
29 дней назад

NATS Server is a high-performance server for NATS.io, the cloud and edge native messaging system. Prior to 2.14.1 and 2.12.9, an MQTT client could include protocol control characters in subscription filters that were later forwarded as NATS protocol data to route or leafnode connections, corrupting the forwarded protocol stream and allowing injection of unintended NATS protocol operations. This issue is fixed in versions 2.14.1 and 2.12.9.

CVSS3: 7.1
debian
29 дней назад

NATS Server is a high-performance server for NATS.io, the cloud and ed ...

EPSS

Процентиль: 25%
0.00324
Низкий

7.1 High

CVSS3

Дефекты

CWE-74