What is CVE-2026-47717?
CVE-2026-47717 is a vulnerability in FUXA SCADA/HMI software version 1.3.0 where the "GET /api/project" endpoint leaks sensitive project configuration data to guest-context requests even when "secureEnabled" is active. This could allow unauthorized access to critical project details. Users should immediately upgrade to version 1.3.1.
Azərbaycanca: CVE-2026-47717, FUXA SCADA/HMI proqramının 1.3.0 versiyasında "secureEnabled" aktiv olsa belə, "GET /api/project" sorğusunun qonaq kontekstli istifadəçilərə həssas layihə konfiqurasiya məlumatlarını sızdırması zəifliyidir. Bu, təsdiqlənməmiş şəxslərin kritik layihə detallarına çıxış əldə etməsinə səbəb ola bilər. İstifadəçilər dərhal 1.3.1 versiyasına yeniləməlidir.
Related CVEs
link basis: same weakness class CWE-200
FAQ2
Which version of FUXA SCADA/HMI software is affected by CVE-2026-47717?
The vulnerability affects version 1.3.0 of FUXA SCADA/HMI software.
What should users do to address CVE-2026-47717?
Users should immediately upgrade to version 1.3.1.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.