CVE-2026-60112: Missing Authentication in NASA AIT-GUI
CVE-2026-60112 is a critical vulnerability in NASA's AIT-GUI before version 2.5.1, allowing unauthenticated network attackers to obtain a valid session and issue…
Critical and exploited CVEs, vulnerability intelligence and remediation guidance.
CVE-2026-60112 is a critical vulnerability in NASA's AIT-GUI before version 2.5.1, allowing unauthenticated network attackers to obtain a valid session and issue…
CVE-2024-35058 is a critical remote code execution vulnerability in the API wait function of NASA AIT-Core, affecting versions up to and including…
CVE-2026-47731 is an unreviewed GitHub advisory describing a path traversal vulnerability in the AMMOS Instrument Toolkit that allows arbitrary file append over…
CVE-2026-71214 is a critical vulnerability in the NASA-AMMOS Aerie/PlanDev sequencing server, as listed in the GitHub Advisory Database. Details are limited but…
CVE-2026-71289 is a critical vulnerability in the Asynchronous Network Management System reference implementation, as listed in the GitHub Advisory Database. It affects…
Security researchers at Cycode have disclosed a chain of vulnerabilities in AIT-GUI, the browser-based operator console for NASA/JPL's open-source AMMOS Instrument Toolkit.…
OpenSSL disclosed a low-severity flaw in QUIC servers that queue incoming channels for unknown destination connection IDs without enforcing a limit, potentially…
CVE-2026-32475 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
Cybersecurity researchers have disclosed a critical vulnerability in the Elementor Pro WordPress plugin that could allow unauthenticated attackers to upload PHP files…
TrueConf Server Code Injection Vulnerability Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based…