Known Vulnerabilities for products from Nasa

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Nasa".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-5476 json Not Provided 2026-04-03 2026-04-04
CVE-2026-5475 json Not Provided 2026-04-03 2026-04-03
CVE-2026-5474 json A vulnerability was found in NASA cFS up to 7.0.0. This affects the function CFE_MSG_GetSize of the file apps/to_lab/fsw/src/... Not Provided 2026-04-03 2026-04-30
CVE-2026-5473 json A vulnerability has been found in NASA cFS up to 7.0.0. The impacted element is the function pickle.load of the component Pic... Not Provided 2026-04-03 2026-04-30
CVE-2025-49067 json Not Provided 2025-06-06 2026-04-23
CVE-2025-39508 json Not Provided 2025-06-17 2026-04-23
CVE-2025-39507 json Not Provided 2025-05-16 2026-04-23
CVE-2025-39506 json Not Provided 2025-05-23 2026-04-23
CVE-2025-25374 json In NASA cFS (Core Flight System) Aquila, it is possible to put the onboard software in a state that will prevent the launch o... Not Provided 2025-03-25 2026-04-30
CVE-2025-25373 json The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain... Not Provided 2025-03-25 2026-04-30
CVE-2025-25372 json NASA cFS (Core Flight System) Aquila is vulnerable to segmentation fault via sending a malicious telecommand to the Memory Ma... Not Provided 2025-03-25 2026-04-30
CVE-2025-25371 json NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowing the override of any arbitra... Not Provided 2025-03-25 2026-04-30
CVE-2024-46636 json Not Provided 2026-04-27 2026-04-28
CVE-2023-45885 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.4 - MEDIUM 2023-11-09 2023-11-15
CVE-2023-45884 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 6.5 - MEDIUM 2023-11-09 2023-11-15
CVE-2023-45282 json In NASA Open MCT (aka openmct) before 3.1.0, prototype pollution can occur via an import action. 7.5 - HIGH 2023-10-06 2023-11-02
CVE-2022-23054 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 6.1 - MEDIUM 2022-02-20 2022-03-01
CVE-2022-23053 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 6.1 - MEDIUM 2022-02-20 2022-03-01
CVE-2022-22126 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 6.1 - MEDIUM 2022-02-20 2022-03-01
CVE-2019-1010060 json NASA CFITSIO prior to 3.43 is affected by: Buffer Overflow. The impact is: arbitrary code execution. The component is: over 4... 9.8 - CRITICAL 2019-07-16 2019-07-22

Known software with vulnerabilities from Nasa

Type Vendor Product Version
ApplicationNasaCfitsio1.01
ApplicationNasaKodiak1.0
ApplicationNasaPyblock1.0
ApplicationNasaSingledop1.0