What is CVE-2026-12989?
CVE-2026-12989 is a lack of authentication vulnerability in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot. An unauthenticated attacker on the internal Wi-Fi network can gain unrestricted access to the web administration interface and HTTP API. Software should be immediately updated to prevent unauthorized control and data access.
Azərbaycanca: CVE-2026-12989 Ghost Robotics şirkətinin Vision 60 robot idarəetmə tətbiqində (APK v5.5.0) autentifikasiya olmaması zəifliyidir. Bu, daxili Wi-Fi şəbəkəsinə qoşulan autentifikasiya olunmamış hücumçuya veb idarəetmə interfeysinə və HTTP API-ə tam giriş imkanı verir. Məxfilik və cihaz nəzarətinin qorunması üçün proqram təminatı təcili yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-306
FAQ2
Which device or software is affected by the CVE-2026-12989 vulnerability?
This vulnerability affects the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot.
What type of network access does an attacker need to exploit this vulnerability?
The attacker must be connected to the internal Wi-Fi network.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.