An issue in the /script-api/scripts/ endpoint of OpenC3 COSMOS 6.0.0 allows attackers to execute a directory traversal.
{ "cwe_ids": [ "CWE-22" ], "nvd_published_at": "2025-06-13T14:15:20Z", "github_reviewed_at": "2025-06-16T13:04:16Z", "github_reviewed": true, "severity": "CRITICAL" }