{"schema_version":1,"title":"Openc3 Cosmos vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 10 vulnerabilities in Openc3 Cosmos: 3 in the last 7 days and 3 in the last 90 days, 3 of them critical and 0 exploited in the wild. The most recent, CVE-2026-77602, was published on 23 September 2026.","url":"https://junglewise.ai/threats/technologies/cosmos","json_url":"https://junglewise.ai/threats/technologies/cosmos.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/cosmos","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":3,"all_time":10,"critical":3,"exploited":0,"last_7_days":3,"last_30_days":3,"last_90_days":3,"last_365_days":8},"latest":[{"cve":"CVE-2026-77602","cvss":9.9,"epss":0.0057,"slug":"cve-2026-77602-openc3-cosmos-authenticated-remote-code-execution-via-config","title":"OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From 5.1.0 until 7.3","severity":"critical","exploited":false,"published_at":"2026-09-23T19:19:18.55+00:00","url":"https://junglewise.ai/threats/cve-2026-77602-openc3-cosmos-authenticated-remote-code-execution-via-config"},{"cve":"CVE-2026-77601","cvss":8.8,"epss":0.0058,"slug":"cve-2026-77601-openc3-cosmos-authenticated-os-command-injection-via-pypi-url","title":"OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From 5.12.0 until 7.","severity":"high","exploited":false,"published_at":"2026-09-23T19:19:18.38+00:00","url":"https://junglewise.ai/threats/cve-2026-77601-openc3-cosmos-authenticated-os-command-injection-via-pypi-url"},{"cve":"CVE-2026-77394","cvss":7.6,"epss":0.0039,"slug":"cve-2026-77394-openc3-cosmos-stored-cross-user-xss-in-button-widget","title":"OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From 5.0.6 until 7.3","severity":"high","exploited":false,"published_at":"2026-09-23T19:19:15.343+00:00","url":"https://junglewise.ai/threats/cve-2026-77394-openc3-cosmos-stored-cross-user-xss-in-button-widget"},{"cve":"CVE-2026-42088","cvss":9.6,"epss":0.0049,"slug":"cve-2026-42088-openc3-cosmos-privilege-escalation-via-script-runner-api-bypass","title":"OpenC3 COSMOS privilege escalation via Script Runner API bypass","severity":"critical","exploited":false,"published_at":"2026-05-04T18:16:31.007+00:00","url":"https://junglewise.ai/threats/cve-2026-42088-openc3-cosmos-privilege-escalation-via-script-runner-api-bypass"},{"cve":"CVE-2026-42087","cvss":9.6,"epss":0.0045,"slug":"cve-2026-42087-openc3-cosmos-sql-injection-in-questdb-time-series-database","title":"OpenC3 COSMOS SQL injection in QuestDB Time-Series Database","severity":"critical","exploited":false,"published_at":"2026-04-23T14:12:02+00:00","url":"https://junglewise.ai/threats/cve-2026-42087-openc3-cosmos-sql-injection-in-questdb-time-series-database"},{"cve":"CVE-2026-42086","cvss":4.6,"epss":0.0029,"slug":"cve-2026-42086-openc3-cosmos-self-xss-in-command-sender","title":"OpenC3 COSMOS Self-XSS in Command Sender","severity":"medium","exploited":false,"published_at":"2026-04-22T22:22:28+00:00","url":"https://junglewise.ai/threats/cve-2026-42086-openc3-cosmos-self-xss-in-command-sender"},{"cve":"CVE-2026-42085","cvss":4.3,"epss":0.0041,"slug":"cve-2026-42085-openc3-cosmos-path-traversal-in-save-tool-config","title":"OpenC3 COSMOS path traversal in save_tool_config","severity":"medium","exploited":false,"published_at":"2026-04-22T22:22:02+00:00","url":"https://junglewise.ai/threats/cve-2026-42085-openc3-cosmos-path-traversal-in-save-tool-config"},{"cve":"CVE-2026-42084","cvss":8.1,"epss":0.0044,"slug":"cve-2026-42084-openc3-cosmos-unverified-password-change-via-session-token","title":"OpenC3 COSMOS unverified password change via session token","severity":"high","exploited":false,"published_at":"2026-04-22T22:13:10+00:00","url":"https://junglewise.ai/threats/cve-2026-42084-openc3-cosmos-unverified-password-change-via-session-token"},{"cve":"CVE-2024-47529","cvss":3.1,"epss":0.0035,"slug":"cve-2024-47529-openc3-cosmos-cleartext-password-storage-in-browser-localstorage","title":"PYSEC-2024-121 - OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. OpenC3 COSMOS stores","severity":"low","exploited":false,"published_at":"2024-10-02T20:15:00+00:00","url":"https://junglewise.ai/threats/cve-2024-47529-openc3-cosmos-cleartext-password-storage-in-browser-localstorage"},{"cve":"CVE-2024-43795","cvss":3.1,"epss":0.0048,"slug":"cve-2024-43795-openc3-cosmos-cross-site-scripting-in-login","title":"PYSEC-2024-100 - OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. The login functional","severity":"low","exploited":false,"published_at":"2024-10-02T20:15:00+00:00","url":"https://junglewise.ai/threats/cve-2024-43795-openc3-cosmos-cross-site-scripting-in-login"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":1,"exploited":0,"vulnerabilities":3}],"related":[],"technology":{"hub":true,"name":"Openc3 Cosmos","slug":"cosmos","vendor":{"name":"Openc3","slug":"openc3","url":"https://junglewise.ai/threats/vendors/openc3"},"aliases":[],"category":"framework","url":"https://junglewise.ai/threats/technologies/cosmos"},"most_severe":[{"cve":"CVE-2026-77602","cvss":9.9,"epss":0.0057,"slug":"cve-2026-77602-openc3-cosmos-authenticated-remote-code-execution-via-config","title":"OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From 5.1.0 until 7.3","severity":"critical","exploited":false,"published_at":"2026-09-23T19:19:18.55+00:00","url":"https://junglewise.ai/threats/cve-2026-77602-openc3-cosmos-authenticated-remote-code-execution-via-config"},{"cve":"CVE-2026-42088","cvss":9.6,"epss":0.0049,"slug":"cve-2026-42088-openc3-cosmos-privilege-escalation-via-script-runner-api-bypass","title":"OpenC3 COSMOS privilege escalation via Script Runner API bypass","severity":"critical","exploited":false,"published_at":"2026-05-04T18:16:31.007+00:00","url":"https://junglewise.ai/threats/cve-2026-42088-openc3-cosmos-privilege-escalation-via-script-runner-api-bypass"},{"cve":"CVE-2026-42087","cvss":9.6,"epss":0.0045,"slug":"cve-2026-42087-openc3-cosmos-sql-injection-in-questdb-time-series-database","title":"OpenC3 COSMOS SQL injection in QuestDB Time-Series Database","severity":"critical","exploited":false,"published_at":"2026-04-23T14:12:02+00:00","url":"https://junglewise.ai/threats/cve-2026-42087-openc3-cosmos-sql-injection-in-questdb-time-series-database"},{"cve":"CVE-2026-77601","cvss":8.8,"epss":0.0058,"slug":"cve-2026-77601-openc3-cosmos-authenticated-os-command-injection-via-pypi-url","title":"OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From 5.12.0 until 7.","severity":"high","exploited":false,"published_at":"2026-09-23T19:19:18.38+00:00","url":"https://junglewise.ai/threats/cve-2026-77601-openc3-cosmos-authenticated-os-command-injection-via-pypi-url"},{"cve":"CVE-2026-42084","cvss":8.1,"epss":0.0044,"slug":"cve-2026-42084-openc3-cosmos-unverified-password-change-via-session-token","title":"OpenC3 COSMOS unverified password change via session token","severity":"high","exploited":false,"published_at":"2026-04-22T22:13:10+00:00","url":"https://junglewise.ai/threats/cve-2026-42084-openc3-cosmos-unverified-password-change-via-session-token"},{"cve":"CVE-2026-77394","cvss":7.6,"epss":0.0039,"slug":"cve-2026-77394-openc3-cosmos-stored-cross-user-xss-in-button-widget","title":"OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. From 5.0.6 until 7.3","severity":"high","exploited":false,"published_at":"2026-09-23T19:19:15.343+00:00","url":"https://junglewise.ai/threats/cve-2026-77394-openc3-cosmos-stored-cross-user-xss-in-button-widget"},{"cve":"CVE-2026-42086","cvss":4.6,"epss":0.0029,"slug":"cve-2026-42086-openc3-cosmos-self-xss-in-command-sender","title":"OpenC3 COSMOS Self-XSS in Command Sender","severity":"medium","exploited":false,"published_at":"2026-04-22T22:22:28+00:00","url":"https://junglewise.ai/threats/cve-2026-42086-openc3-cosmos-self-xss-in-command-sender"},{"cve":"CVE-2026-42085","cvss":4.3,"epss":0.0041,"slug":"cve-2026-42085-openc3-cosmos-path-traversal-in-save-tool-config","title":"OpenC3 COSMOS path traversal in save_tool_config","severity":"medium","exploited":false,"published_at":"2026-04-22T22:22:02+00:00","url":"https://junglewise.ai/threats/cve-2026-42085-openc3-cosmos-path-traversal-in-save-tool-config"},{"cve":"CVE-2024-43795","cvss":3.1,"epss":0.0048,"slug":"cve-2024-43795-openc3-cosmos-cross-site-scripting-in-login","title":"PYSEC-2024-100 - OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. The login functional","severity":"low","exploited":false,"published_at":"2024-10-02T20:15:00+00:00","url":"https://junglewise.ai/threats/cve-2024-43795-openc3-cosmos-cross-site-scripting-in-login"},{"cve":"CVE-2024-47529","cvss":3.1,"epss":0.0035,"slug":"cve-2024-47529-openc3-cosmos-cleartext-password-storage-in-browser-localstorage","title":"PYSEC-2024-121 - OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. OpenC3 COSMOS stores","severity":"low","exploited":false,"published_at":"2024-10-02T20:15:00+00:00","url":"https://junglewise.ai/threats/cve-2024-47529-openc3-cosmos-cleartext-password-storage-in-browser-localstorage"}],"generated_at":"2026-09-26T13:07:00.120236+00:00"}