CVE-2026-43946
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
21/07/2026
Last modified:
23/07/2026
Description
FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Version 1.3.0 has an authorization bypass in the /api/getTagValue endpoint allows unauthenticated access to tag values when the referenced script does not exist. Version 1.3.1 patches the issue.



