Description

FlashMQ is a MQTT broker/server, designed for multi-CPU environments. Prior to version 1.23.2, any authenticated user can create sessions and have them collect QoS messages. When not sent to a client, these are then not released upon (eventual) session expiration. Version 1.23.2 fixes the issue.

INFO

Published Date :

2025-10-24T20:16:34.047Z

Last Modified :

2025-10-24T20:32:00.596Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-62723 vulnerability.

Vendors Products
Flashmq
  • Flashmq

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact