PT-2026-97394 · Moquette · Moquette
CVE-2026-95843
·
Published
2026-09-23
·
Updated
2026-09-23
CVSS v3.1
9.6
Critical
| Vector | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Moquette versions prior to 0.18.1
Description
An issue exists where the
PostOffice.subscribe function parses a shared-subscription filter using SharedSubscriptionUtils.extractShareName before validating the full $share/{shareName}/{topicFilter} structure. A remote client can trigger a StringIndexOutOfBoundsException by sending a filter like $share/grp that lacks the topic-filter portion. This exception terminates command handling on the shared session event loop, resulting in a denial of service for other client sessions assigned to that loop.Recommendations
Update to version 0.18.1.
Exploit
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Moquette