-
-
Notifications
You must be signed in to change notification settings - Fork 8
[Connector] Add command validation and whitelist to RCON gateway #405
Copy link
Copy link
Closed
5stackgg/game-server-node-connector
#7Labels
P0-criticalSecurity & data loss riskSecurity & data loss riskaudit-2026-03From March 2026 codebase auditFrom March 2026 codebase auditsecuritySecurity vulnerability or hardeningSecurity vulnerability or hardeningservice:connector5stackgg/game-server-node-connector service5stackgg/game-server-node-connector service
Metadata
Metadata
Assignees
Labels
P0-criticalSecurity & data loss riskSecurity & data loss riskaudit-2026-03From March 2026 codebase auditFrom March 2026 codebase auditsecuritySecurity vulnerability or hardeningSecurity vulnerability or hardeningservice:connector5stackgg/game-server-node-connector service5stackgg/game-server-node-connector service
Type
Projects
Status
Done
Summary
The RCON WebSocket gateway needs command validation to ensure only authorized commands are executed.
Tasks
Impact
Could allow execution of unintended commands on game servers.
Details
Full details in internal audit document. Finding IDs: CRIT-CONN-02
Related Issues (Input Validation Pattern)