Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Yamcs CRITICAL 9.1
CVE-2026-46621

Yamcs is a mission control framework. Prior to 5.12.7, the Yamcs script evaluation engine for Python algorithms dynamically compiled and evaluated us…

Fix: 5.12.7+
Fix from $2,300 2026-07-16
Yamcs CRITICAL 9.8
CVE-2026-46562

Yamcs is a mission control framework. Prior to 5.12.7, the Nashorn ScriptEngine used to evaluate user-supplied JavaScript algorithm text in yamcs-cor…

Fix: 5.12.7+
Fix from $2,300 2026-07-16
Yamcs CRITICAL 9.1
CVE-2026-44632

Yamcs is a mission control framework. Prior to 5.12.7, a server-side code injection vulnerability existed in the Yamcs algorithm evaluation engine or…

Fix: 5.12.7+
Fix from $2,300 2026-07-16
Yamcs CRITICAL 9.8
CVE-2026-44596

Yamcs is a mission control framework. Prior to 5.12.7, the authentication endpoint POST /auth/token in yamcs-core, handled by yamcs-core/src/main/jav…

Fix: 5.12.7+
Fix from $2,300 2026-07-16
Yacms MEDIUM 6.1
CVE-2023-47311

An issue in Yamcs 5.8.6 allows attackers to send aribitrary telelcommands in a Command Stack via Clickjacking.

No fix yet
Fix from $1,600 2023-11-20
Yacms MEDIUM 5.4
CVE-2023-46470

Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6 allows a remote attacker to execute arbitrary code via crafted teleco…

No fix yet
Fix from $1,600 2023-11-20
Yacms MEDIUM 5.4
CVE-2023-46471

Cross Site Scripting vulnerability in Space Applications Services Yamcs v.5.8.6 allows a remote attacker to execute arbitrary code via the text varia…

No fix yet
Fix from $1,600 2023-11-20
Yamcs MEDIUM 5.4
CVE-2023-45279

Yamcs 5.8.6 allows XSS (issue 1 of 2). It comes with a Bucket as its primary storage mechanism. Buckets allow for the upload of any file. There's a w…

Patch available
Fix from $1,600 2023-10-19
Yamcs MEDIUM 5.4
CVE-2023-45280

Yamcs 5.8.6 allows XSS (issue 2 of 2). It comes with a Bucket as its primary storage mechanism. Buckets allow for the upload of any file. There's a w…

Patch available
Fix from $1,600 2023-10-19
Yamcs CRITICAL 9.1
CVE-2023-45278

Directory Traversal vulnerability in the storage functionality of the API in Yamcs 5.8.6 allows attackers to delete arbitrary files via crafted HTTP …

Patch available
Fix from $2,300 2023-10-19
Yamcs HIGH 7.5
CVE-2023-45277

Yamcs 5.8.6 is vulnerable to directory traversal (issue 1 of 2). The vulnerability is in the storage functionality of the API and allows one to escap…

Patch available
Fix from $1,950 2023-10-19
Yamcs MEDIUM 6.1
CVE-2023-45281

An issue in Yamcs 5.8.6 allows attackers to obtain the session cookie via upload of crafted HTML file.

No fix yet
Fix from $1,600 2023-10-19