Aedes Project

Aedes

3 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.31%
  • Published 03.12.2024 19:15:09
  • Last modified 21.02.2025 06:15:20

An issue in aedes v0.51.2 allows attackers to cause a Denial of Service(DoS) via a crafted request. NOTE: the Supplier indicates that exploitation cannot occur because of the protection mechanism in the validateTopic function in lib/utils.js.

Exploit
  • EPSS 0.54%
  • Published 26.08.2020 15:15:12
  • Last modified 21.11.2024 05:01:11

An issue was discovered in MoscaJS Aedes 0.42.0. lib/write.js does not properly consider exceptions during the writing of an invalid packet to a stream.

  • EPSS 0.33%
  • Published 08.08.2018 20:29:00
  • Last modified 21.11.2024 04:06:03

Improper authorization in aedes version <0.35.0 will publish a LWT in a channel when a client is not authorized.