PatchSiren

NASA-AMMOS CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL NASA-AMMOS CVE published 2026-07-21

CVE-2026-47731

The AMMOS Instrument Toolkit (AIT-Core) is vulnerable to a critical path traversal and arbitrary file append attack due to a lack of proper validation of path-related form fields in the Binary Stream Capture (BSC) component. This issue affects BSC (Binary Stream Capture) and usage of the ait-bsc server, impacting AIT-Core versions before 3.1.1 and 2.x before 2.6.1. The vulnerability allows a remote client [truncated]