PatchSiren

OpenC3 CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL OpenC3 CVE published 2026-09-23

CVE-2026-77602

CVE-2026-77602 is a critical vulnerability in OpenC3 COSMOS that allows authenticated non-administrator users to write and execute content with elevated privileges. The issue is fixed in version 7.3.0. This vulnerability affects OpenC3 COSMOS deployments, particularly those with authenticated non-administrator users, and could lead to code execution, unauthorized access, and data breaches. Defenders shoul [truncated]