CVE-2026-44090
An unauthenticated attacker can connect to an MQTT broker that lacks authentication, potentially taking full control of the device. The broker is only protected by a firewall, so if the firewall is bypassed or misconfigured, the device is at risk. No vendor patch or official fix is documented.
No official fix yet. If none appears within 45 days of first tracking, this entry is removed automatically.
Who is affected
No specific product versions are listed, but any device running an MQTT broker without authentication and relying solely on a firewall for protection could be affected.
Real-world impact
An attacker who gains access can execute commands, exfiltrate data, or use the device as a foothold for further attacks, effectively compromising the entire device.
Why this severity
The CVSS score of 9.3 reflects the high confidentiality, integrity, and availability impact of the vulnerability, combined with the lack of authentication and the ease of remote exploitation.
What to do about it
- ›Block external access to the MQTT broker using firewall rules or network segmentation to prevent unauthenticated connections.
No official fix or mitigation is documented in the sources yet. Monitor the vendor advisory and apply the patch as soon as it is released.
NVD description