CVE-2023-45884: Nasa Openmct

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Cross Site Request Forgery (CSRF) vulnerability in NASA Open MCT (aka openmct) through 3.1.0 allows attackers to view sensitive information via the flexibleLayout plugin.

Affected products

  • Nasa Openmct: up to and including 3.1.0

Published 2023-11-09. Last modified 2026-06-17.