๐Ÿ” CVE Alert

CVE-2026-55545

MEDIUM 6.5

Yamcs: WebSocket subscription handlers omit the privilege checks their REST siblings enforce

CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th

Yamcs is a mission control framework. Prior to 5.12.8 and 5.13.2, Yamcs WebSocket subscription handlers fail to enforce the privileges required by equivalent REST endpoints. PacketsApi.subscribePackets exposes the packets WebSocket topic without ObjectPrivilegeType.ReadPacket, ProcessingApi.subscribeAlgorithmStatus exposes the algorithm-status WebSocket topic without ObjectPrivilegeType.ReadAlgorithm, and MdbOverrideApi.subscribeMdbChanges exposes the mdb-changes WebSocket topic without SystemPrivilege.GetMissionDatabase. A low-privilege authenticated user can receive telemetry packets, algorithm status, and mission database change information outside the assigned authorization scope. This issue is fixed in versions 5.12.8 and 5.13.2.

CWE CWE-862
Vendor yamcs
Product yamcs
Published Aug 28, 2026
Stay Ahead of the Next One

Get instant alerts for yamcs yamcs

Be the first to know when new medium vulnerabilities affecting yamcs yamcs are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None

Affected Versions

yamcs / yamcs
< 5.12.8 >= 5.13.0, < 5.13.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/yamcs/yamcs/security/advisories/GHSA-fwww-cp23-7f5g github.com: https://github.com/yamcs/yamcs/commit/0691731846c5a0aca81b88fabbd2cd51d56fe076 github.com: https://github.com/yamcs/yamcs/commit/12864af555e6ca4941b01c1f1217859cc0492ce0 github.com: https://github.com/yamcs/yamcs/releases/tag/yamcs-5.12.8 github.com: https://github.com/yamcs/yamcs/releases/tag/yamcs-5.13.2