CVE-2026-10763General

LOWCVSS 7.0 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

PROMOD V is using insecure HTTP communication instead of HTTPS. The vulnerability is due to the lack of HTTPS support from 3rd party Digipede server.

0.0/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-06-30); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-06-30: 1Mentions · 2026-07-08: 1Technical Details · 2026-06-30: 1Technical Details · 2026-07-08: 106-3007-08
Signal classification2 categories
General
150.0%
Disclosure
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-06-301
General1
2026-07-081
Disclosure1
Full discourse2 posts
  • Aviatrix Threat Research Center@aviatrixtrc
    Disclosure

    TRC analysis shows attackers can intercept unencrypted HTTP traffic in Hitachi Energy's PROMOD V (CVE-2026-10763), enabling credential theft and lateral movement across industrial networks. Runtime segmentation helps contain post-compromise activity in critical infrastructure. #CloudSecurity :link: Full TRC analysis: https://aviatrix.ai/threat-research-center/hitachi-energy-promod-v-cve-2026-10763

    Post summary

    The post reports that attackers can intercept unencrypted HTTP traffic in Hitachi Energy’s PROMOD V (CVE‑2026‑10763), enabling credential theft and industry‑wide lateral movement, but it does not provide PoC, exploit code, or patch details.

    0001057
    1.9K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-10763 Insecure HTTP Communication Vulnerability in PROMOD V Digipede Server Integration https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-10763

    Post summary

    The entry only lists CVE-2026-10763 with a brief description of an insecure HTTP communication issue in PROMOD V Digipede Server Integration, without further exploitation, mitigation, or detailed technical data.

    00000102
    4.1K followersView on X

Explore more