CRITICAL
sgoudelis
CVE published 2026-08-19
CVE-2026-53451
The CVE-2026-53451 vulnerability is a critical issue in the Ground Station software, which allows unauthenticated attackers to execute arbitrary code with service privileges. This vulnerability is caused by improper input validation and path traversal in the save-waterfall-snapshot Socket.IO command. The vulnerability can be exploited by writing a logging YAML file containing a logging.config.dictConfig c [truncated]