Security

Vulnerabilities

Real-time alerts of vulnerabilities across monitored open-source ecosystems.

Ecosystems covered

7

Debian, Go, Maven & more

Total vulnerabilities tracked

20

From global vulnerability databases

Exclude malware
Package mqtt

6.3

Medium

Ecosystem: SwiftURL

Package: cocoamqtt

FLAT-FAL19 (MAL-2026-1111)

Use of software with malware In mqttoken

5.2

Medium

Ecosystem: Npm

Package: mqttoken

1.7

Low

Ecosystem: Go

Package: github.com/eclipse/paho.mqtt.golang

5.2

Medium

Ecosystem: Npm

Package: @clausehq/flows-step-mqtt

FLAT-YY0IY (CVE-2025-12790)

Lack of data validation In mqtt

6.9

Medium

Ecosystem: RubyGems

Package: mqtt

5.2

Medium

Ecosystem: Npm

Package: date-november-mqtt

5.2

Medium

Ecosystem: Npm

Package: mqtt_plugin

5.2

Medium

Ecosystem: Npm

Package: zigbee2mqtt.io

6.6

Medium

Ecosystem: Go

Package: github.com/mochi-mqtt/server

5.2

Medium

Ecosystem: Npm

Package: @mqttapplicationsamples/mqttjsclientextensions

5.2

Medium

Ecosystem: Npm

Package: nodejs-docs-samples-iot-mqtt-example

5.2

Medium

Ecosystem: Npm

Package: mqttoverwsprovider

2.7

Low

Ecosystem: Debian

Package: mqtt-client

FLAT-37BKD (GHSA-563h-697m-j7x5)

Insecure deserialization In device-mqtt

1.7

Low

Ecosystem: Npm

Package: device-mqtt

FLAT-7LMXC (CVE-2016-1000242)

Asymmetric denial of service In mqtt

6.6

Medium

Ecosystem: Npm

Package: mqtt

6.6

Medium

Ecosystem: Maven

Package: org.eclipse.paho:org.eclipse.paho.client.mqttv3

6.6

Medium

Ecosystem: Npm

Package: mqtt-packet

6.6

Medium

Ecosystem: NuGet

Package: microsoft.azure.umqtt

6.6

Medium

Ecosystem: Npm

Package: mqtt-packet

FLAT-GXFBP (CVE-2017-10910)

Improper resource allocation In mqtt

4.9

Medium

Ecosystem: Npm

Package: mqtt