CVE-2025-12790

A flaw was found in Rubygem MQTT. By default, the package used to not have hostname validation, resulting in possible Man-in-the-Middle (MITM) attack.
Configurations

No configuration.

History

06 Nov 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-06 21:15

Updated : 2025-11-12 16:20


NVD link : CVE-2025-12790

Mitre link : CVE-2025-12790

CVE.ORG link : CVE-2025-12790


JSON object : View

Products Affected

No product.

CWE
CWE-29

Path Traversal: '\..\filename'