Known Vulnerabilities for products from Spaceapplications
Listed below are 11 of the newest known vulnerabilities associated with the vendor "Spaceapplications".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-55548 json | Yamcs is a mission control framework. Prior to 5.12.8 and 5.13.2, the PacketsApi.exportPackets endpoint in yamcs-core/src/mai... | Not Provided | 2026-07-16 | 2026-07-20 |
| CVE-2026-46621 json | Yamcs is a mission control framework. Prior to 5.12.7, the Yamcs script evaluation engine for Python algorithms dynamically c... | Not Provided | 2026-07-16 | 2026-07-20 |
| CVE-2026-46562 json | Yamcs is a mission control framework. Prior to 5.12.7, the Nashorn ScriptEngine used to evaluate user-supplied JavaScript alg... | Not Provided | 2026-07-16 | 2026-07-20 |
| CVE-2026-44632 json | Yamcs is a mission control framework. Prior to 5.12.7, a server-side code injection vulnerability existed in the Yamcs algori... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-44596 json | Yamcs is a mission control framework. Prior to 5.12.7, the authentication endpoint POST /auth/token in yamcs-core, handled by... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-44595 json | Yamcs is a mission control framework. Prior to 5.12.7, the IAM API endpoints listUsers, getUser, listGroups, and getGroup in ... | Not Provided | 2026-07-16 | 2026-07-18 |
| CVE-2023-45281 json | An issue in Yamcs 5.8.6 allows attackers to obtain the session cookie via upload of crafted HTML file. | 6.1 - MEDIUM | 2023-10-19 | 2023-10-25 |
| CVE-2023-45280 json | Yamcs 5.8.6 allows XSS (issue 2 of 2). It comes with a Bucket as its primary storage mechanism. Buckets allow for the upload ... | 5.4 - MEDIUM | 2023-10-19 | 2023-10-25 |
| CVE-2023-45279 json | Yamcs 5.8.6 allows XSS (issue 1 of 2). It comes with a Bucket as its primary storage mechanism. Buckets allow for the upload ... | 5.4 - MEDIUM | 2023-10-19 | 2023-10-25 |
| CVE-2023-45278 json | Directory Traversal vulnerability in the storage functionality of the API in Yamcs 5.8.6 allows attackers to delete arbitrary... | 9.1 - CRITICAL | 2023-10-19 | 2023-10-25 |
| CVE-2023-45277 json | Yamcs 5.8.6 is vulnerable to directory traversal (issue 1 of 2). The vulnerability is in the storage functionality of the API... | 7.5 - HIGH | 2023-10-19 | 2023-10-25 |