Vulnerability index

Browse CVEs

55 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ait Gui CRITICAL 9.8
CVE-2026-60112

AMMOS Instrument Toolkit (AIT) GUI before 2.5.1 contains a missing authentication vulnerability that allows any unauthenticated network attacker to o…

No fix yet
Fix from $2,300 2026-07-29
Ait Dsn CRITICAL 9.8
CVE-2026-60113

AMMOS Instrument Toolkit (AIT) Deep Space Network (DSN) Interface before 2.2.2 contains a missing authentication vulnerability in the Space Link Exte…

No fix yet
Fix from $2,300 2026-07-29
Fprime CRITICAL 9.8
CVE-2026-41144

F´ (F Prime) is a framework that enables development and deployment of spaceflight and other embedded software applications. Prior to version 4.2.0, …

Patch available
Fix from $2,300 2026-04-22
Core Flight System MEDIUM 5.5
CVE-2026-5475

A vulnerability was determined in NASA cFS up to 7.0.0. This impacts the function CFE_SB_TransmitMsg of the file cfe_sb_priv.c of the component CCSDS…

Fix: after 7.0.0
Fix from $1,600 2026-04-03
Core Flight System HIGH 8.8
CVE-2026-5474

A vulnerability was found in NASA cFS up to 7.0.0. This affects the function CFE_MSG_GetSize of the file apps/to_lab/fsw/src/to_lab_passthru_encode.c…

Fix: after 7.0.0
Fix from $1,950 2026-04-03
Core Flight System HIGH 7.0
CVE-2026-5473

A vulnerability has been found in NASA cFS up to 7.0.0. The impacted element is the function pickle.load of the component Pickle Module. Such manipul…

Fix: after 7.0.0
Fix from $1,950 2026-04-03
Cryptolib HIGH 7.5
CVE-2026-22697

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.3+
Fix from $1,950 2026-01-10
Cryptolib HIGH 7.5
CVE-2026-22023

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.3+
Fix from $1,950 2026-01-10
Cryptolib HIGH 7.5
CVE-2026-22026

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.3+
Fix from $1,950 2026-01-10
Cryptolib MEDIUM 6.0
CVE-2026-22027

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.3+
Fix from $1,600 2026-01-10
Cryptolib MEDIUM 5.9
CVE-2026-21900

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.3+
Fix from $1,600 2026-01-10
Cryptolib MEDIUM 5.3
CVE-2026-22024

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.3+
Fix from $1,600 2026-01-10
Cryptolib HIGH 8.2
CVE-2026-21898

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.3+
Fix from $1,950 2026-01-10
Cryptolib HIGH 7.3
CVE-2026-21897

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.3+
Fix from $1,950 2026-01-10
Cryptolib HIGH 8.8
CVE-2025-64096

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.2+
Fix from $1,950 2025-10-30
Cryptolib HIGH 7.8
CVE-2025-59534

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.2+
Fix from $1,950 2025-09-23
Cryptolib HIGH 8.6
CVE-2025-54878

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.1+
Fix from $1,950 2025-08-11
Cryptolib CRITICAL 9.9
CVE-2025-46673

NASA CryptoLib before 1.3.2 does not check whether the SA is in an operational state before use, possibly leading to a bypass of the Space Data Link …

Fix: 1.3.2+
Fix from $2,300 2025-04-27
Cryptolib CRITICAL 9.9
CVE-2025-46674

NASA CryptoLib before 1.3.2 uses Extended Procedures that are a Work in Progress (not intended for use during flight), potentially leading to a keyst…

Fix: 1.3.2+
Fix from $2,300 2025-04-27
Cryptolib HIGH 8.8
CVE-2025-46672

NASA CryptoLib before 1.3.2 does not check the OTAR crypto function returned status, potentially leading to spacecraft hijacking.

Fix: 1.3.2+
Fix from $1,950 2025-04-27
Cryptolib CRITICAL 9.8
CVE-2025-30356

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.0+
Fix from $2,300 2025-04-01
Core Flight System CRITICAL 9.8
CVE-2025-25373

The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on the platform.

No fix yet
Fix from $2,300 2025-03-25
Core Flight System HIGH 7.5
CVE-2025-25372

NASA cFS (Core Flight System) Aquila is vulnerable to segmentation fault via sending a malicious telecommand to the Memory Management Module.

No fix yet
Fix from $1,950 2025-03-25
Core Flight System HIGH 7.5
CVE-2025-25374

In NASA cFS (Core Flight System) Aquila, it is possible to put the onboard software in a state that will prevent the launch of any external applicati…

No fix yet
Fix from $1,950 2025-03-25
Fprime CRITICAL 9.8
CVE-2024-55028

A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to execute arbitrary code via uploading a crafted Vue file.

No fix yet
Fix from $2,300 2025-03-25
Fprime CRITICAL 9.8
CVE-2024-55030

A command injection vulnerability in the Command Dispatcher Service of NASA Fprime v3.4.3 allows attackers to execute arbitrary commands.

No fix yet
Fix from $2,300 2025-03-25
Core Flight System HIGH 7.5
CVE-2025-25371

NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowing the override of any arbitrary file on the system.

No fix yet
Fix from $1,950 2025-03-25
Fprime MEDIUM 6.1
CVE-2024-55029

NASA Fprime v3.4.3 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities.

No fix yet
Fix from $1,600 2025-03-25
Cryptolib CRITICAL 9.1
CVE-2025-30216

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.0+
Fix from $2,300 2025-03-25
Cryptolib CRITICAL 9.8
CVE-2025-29911

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

No fix yet
Fix from $2,300 2025-03-17