Mission Control
by Brightpick
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-64309 | Hig | 0.56 | 8.6 | 0.00 | Nov 15, 2025 | Brightpick Mission Control discloses device telemetry, configuration, and credential information via WebSocket traffic to unauthenticated users when they connect to a specific URL. The unauthenticated URL can be discovered through basic network scanning techniques. | ||
| CVE-2025-64308 | Hig | 0.49 | 7.5 | 0.00 | Nov 15, 2025 | The Brightpick Mission Control web application exposes hardcoded credentials in its client-side JavaScript bundle. |
- risk 0.56cvss 8.6epss 0.00
Brightpick Mission Control discloses device telemetry, configuration, and credential information via WebSocket traffic to unauthenticated users when they connect to a specific URL. The unauthenticated URL can be discovered through basic network scanning techniques.
- risk 0.49cvss 7.5epss 0.00
The Brightpick Mission Control web application exposes hardcoded credentials in its client-side JavaScript bundle.