Junglewise Threat Intelligence

CVE-2025-28389: PYSEC-2025-150 - Weak password requirements in OpenC3 COSMOS v6.0.0 allow attackers to bypass authentication via a brute force attack.

CVE-2025-28389 · Severity: low · CVSS 3.1 · Published 2025-06-13

Technologies: openc3 (PyPI). Vendors: PyPI.

Executive brief

Weak password requirements in OpenC3 COSMOS v6.0.0 allow attackers to bypass authentication via a brute force attack.

Affected products

  • PyPI openc3

Related threats