Grid Protection Alliance Vulnerabilities Responses
GPA's Definition of a Vulnerability
GPA's Approach to Coordinated Vulnerability Disclosure
Most Recent
A critical vulnerability has been identified in both openPDC and openHistorian, which allows an attacker to perform command execution by leveraging arbitrary file write.
Most GPA Products are deployed on Premise and not affected by the ongoing global outage. Any openHistorian and openXDA systems hosted by GPA for our clients are also not affected by this outage. A small number of deployments using Microsoft services for authentication may be partially affected.
Addressing the CISA WiX toolset Vulnerability (CVE-2024-25810) as it relates to GPA products.