Ghost Robotics vulnerabilities
3 CVEs tracked
Ghost Robotics' Vision 60 robot (APK v5.5.0) appears in our reporting with critical security vulnerabilities. The mobile app suffers from a lack of authentication (CVE-2026-12989) and access control weaknesses (CVE-2026-12990), allowing an attacker on the internal network to gain unrestricted control. The absence of cryptographic mechanisms for communications (CVE-2026-12991) further exposes the system to man-in-the-middle attacks. Defenders must restrict access to the device's internal Wi-Fi network and urgently apply software updates.
Azərbaycanca: Ghost Robotics şirkətinin Vision 60 robotu (APK v5.5.0) hesabatlarımızda kritik təhlükəsizlik boşluqları ilə diqqət çəkir. Mobil tətbiqdə identifikasiya olmaması (CVE-2026-12989) və giriş nəzarəti zəifliyi (CVE-2026-12990) daxili şəbəkədəki hücumçuya tam nəzarət imkanı verir. Kommunikasiya kanalında şifrələmə mexanizmlərinin çatışmazlığı isə (CVE-2026-12991) man-in-the-middle hücumları üçün şərait yaradır. Müdafiəçilər bu cihazın daxili Wi-Fi şəbəkəsinə çıxışı məhdudlaşdırmalı və proqram yeniləmələrini təcili tətbiq etməlidir.
This vendor's CVEs3
This hub is built from skopnix's own reporting on Ghost Robotics: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.