CNNVD-202506-1724 Information

CNNVD ID

CNNVD-202506-1724

CVE-2025-28386

  • CNNVD Published: 2025-06-13

Description (Chinese)

OpenC3 COSMOS是OpenC3开源的一个应用程序。 OpenC3 COSMOS v6.0.0版本存在安全漏洞,该漏洞源于上传特制.txt文件可能导致执行任意代码。

Description (English)

OpenC3 COSMOS is an application of OpenC3 open source. OpenC3 COSMOS v6.0.0 contains a security loophole that originates from uploading of the .txt file that may result in the implementation of any code.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

OpenC3

Published

2025-06-13

Last Modified

2026-02-24

References

https://openc3.com/ https://visionspace.com/openc3-cosmos-a-security-assessment-of-an-open-source-mission-framework/ https://access.redhat.com/security/cve/cve-2025-28386

Patch

https://docs.openc3.com/docs/getting-started/upgrading

Share on: