7.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Description
The Brightpick Mission Control web application exposes hardcoded credentials in its client-side JavaScript bundle.
Basic Information
ID
CVE-2025-64308
Source
icscert
Published
Nov 14, 2025 at 23:38
Affected Product
Vendor
Brightpick AI
Product
Brightpick Mission Control / Internal Logic Control
Version
All versions
Affected Versions
Brightpick AI Brightpick Mission Control / Internal Logic Control All versions