Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2025-69985EPSS 6% FUXA 1.2.8 and prior contains an Authentication Bypass vulnerability leading to Remote Code Execution (RCE). The vulnerability exists in the server/a… Fuxa after 1.2.8 Fix from $2,3002026-02-24 CRITICAL 9.8 CVE-2026-25938 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. From 1.2.8 through 1.2.10, an authentication bypass vulnerability in FUXA a… Fuxa 1.2.11+ Fix from $2,3002026-02-09 CRITICAL 9.1 CVE-2026-25939EPSS 11% FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. From 1.2.8 through version 1.2.10, an authorization bypass vulnerability i… Fuxa 1.2.11+ Fix from $2,3002026-02-09 HIGH 7.2 CVE-2026-25951 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.2.11, there is a flaw in the path sanitization logic allows an a… Fuxa 1.2.11+ Fix from $1,9502026-02-09 CRITICAL 9.8 CVE-2026-25893 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. Prior to 1.2.10, an authentication bypass vulnerability in FUXA allows an u… Fuxa 1.2.10+ Fix from $2,3002026-02-09 CRITICAL 9.8 CVE-2026-25894 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. An insecure default configuration in FUXA allows an unauthenticated, remote… Fuxa 1.2.10+ Fix from $2,3002026-02-09 CRITICAL 9.8 CVE-2026-25895 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. A path traversal vulnerability in FUXA allows an unauthenticated, remote at… Fuxa 1.2.10+ Fix from $2,3002026-02-09 CRITICAL 9.1 CVE-2026-25752 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. An authorization bypass vulnerability in FUXA allows an unauthenticated, re… Fuxa 1.2.10+ Fix from $2,3002026-02-06 HIGH 7.5 CVE-2026-25751 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. An information disclosure vulnerability in FUXA allows an unauthenticated, … Fuxa 1.2.10+ Fix from $1,9502026-02-06 CRITICAL 9.8 CVE-2025-69971 FUXA v1.2.7 contains a hard-coded credential vulnerability in server/api/jwt-helper.js. The application uses a hard-coded secret key to sign and veri… Fuxa Mitigation only Fix from $2,3002026-02-03 CRITICAL 9.8 CVE-2025-69981 FUXA v1.2.7 contains an Unrestricted File Upload vulnerability in the `/api/upload` API endpoint. The endpoint lacks authentication mechanisms, allow… Fuxa Mitigation only Fix from $2,3002026-02-03 CRITICAL 9.8 CVE-2025-69983 FUXA v1.2.7 allows Remote Code Execution (RCE) via the project import functionality. The application does not properly sanitize or sandbox user-suppl… Fuxa Mitigation only Fix from $2,3002026-02-03 CRITICAL 9.3 CVE-2025-69970 FUXA v1.2.7 contains an insecure default configuration vulnerability in server/settings.default.js. The 'secureEnabled' flag is commented out by defa… Fuxa Mitigation only Fix from $2,3002026-02-03 CRITICAL 9.8 CVE-2023-31719EPSS 27% FUXA <= 1.1.12 is vulnerable to SQL Injection via /api/signin. Fuxa after 1.1.12 Fix from $2,3002023-09-22 HIGH 7.5 CVE-2023-31717 A SQL Injection attack in FUXA <= 1.1.12 allows exfiltration of confidential information from the database. Fuxa after 1.1.12 Fix from $1,9502023-09-22 HIGH 7.5 CVE-2023-31718 FUXA <= 1.1.12 is vulnerable to Local via Inclusion via /api/download. Fuxa after 1.1.12 Fix from $1,9502023-09-22 HIGH 7.5 CVE-2023-31716 FUXA <= 1.1.12 has a Local File Inclusion vulnerability via file=fuxa.log Fuxa after 1.1.12 Fix from $1,9502023-09-22 CRITICAL 9.8 CVE-2023-33831EPSS 14% A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA 1.1.13 allows attackers to execute arbitrary commands via a cra… Fuxa No fix yet Fix from $2,3002023-09-18 HIGH 7.5 CVE-2021-45851 A Server-Side Request Forgery (SSRF) attack in FUXA 1.1.3 can be carried out leading to the obtaining of sensitive information from the server's inte… Fuxa No fix yet Fix from $1,9502022-03-16