What is CVE-2026-40430?
Pronetiqs IntraVUE versions 3.2.1a14 and prior contain a plaintext storage vulnerability that could expose cleartext credentials through the API. Users should update to the latest version to mitigate the risk.
Azərbaycanca: Pronetiqs IntraVUE proqramının 3.2.1a14 və əvvəlki versiyalarında parolun açıq mətn şəklində saxlanması zəifliyi aşkarlanıb. Bu boşluq API vasitəsilə etimadnamələrin ifşasına səbəb ola bilər. İstifadəçilərə proqramı ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-522; shared vendor: Pronetiqs
FAQ2
What vulnerability was discovered in Pronetiqs IntraVUE?
The vulnerability identified as CVE-2026-40430 involves plaintext storage of passwords, which could lead to exposure of cleartext credentials through the API.
How can users protect themselves from this security flaw?
Users are advised to update Pronetiqs IntraVUE to the latest version, as the vulnerability affects versions 3.2.1a14 and prior.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.