OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From 5.0.6 until 7.3.0, an authenticated actor with system_set permission can store a shared screen through POST /openc3-api/screen whose BU
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-77602 | 9.9 CRITICAL | OpenC3 COSMOS: Authenticated remote code execution via the user-writable config overlay (t |
| CVE-2026-77601 | 8.8 HIGH | OpenC3 COSMOS: Authenticated OS command injection via the `pypi_url` setting |
No comments yet