THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-47719 (HIGH 8.2) — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the DEVICE_WEBAPI_REQUEST and DEVICE_PROPERTY Socket.IO handlers in server/runtime/index.js omit isSocketWriteAuthorized and accept attacker-controlled property.address or endpoint connectio

[NVD] CVE-2026-47719 (HIGH 8.2) — FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the DEVICE_WEBAPI_REQUEST and DEVICE_PROPERTY Socket.IO handlers in server/runtime/index.js omit isSocketWriteAuthorized and accept attacker-controlled property.address or endpoint connectio

mednvdPublished 2026-08-18

CVE-2026-47719 CVSS: 8.2 HIGH Published: 2026-08-18T20:17:15.103

FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.3.2, the DEVICE_WEBAPI_REQUEST and DEVICE_PROPERTY Socket.IO handlers in server/runtime/index.js omit isSocketWriteAuthorized and accept attacker-controlled property.address or endpoint connection data. A remote unauthenticated attacker can make ser

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-47719