In Eclipse Mosquitto versions 2.0 to 2.0.11, when using the dynamic security plugin, if the ability for a client to make subscriptions on a topic is revoked when a durable client is offline, then existing subscriptions for that client are not revoked.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
eclipse mosquitto |
||
fedoraproject fedora 34 |
||
fedoraproject fedora 35 |