CVE-2026-25894Disclosure(frangoteam / fuxa)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch frangoteam fuxa systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. An insecure default configuration in FUXA allows an unauthenticated, remote attacker to gain administrative access and execute arbitrary code on the server. This affects FUXA through version 1.2.9 when authentication is enabled, but the administrator JWT secret is not configured. This issue has been patched in FUXA version 1.2.10.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-321CWE-1188

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • fuxa

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 3 mentions (2026-02-10); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Vendors
Products
fuxa

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-02-09: 1Mentions · 2026-02-10: 3Mentions · 2026-03-07: 1Patch / Workaround · 2026-02-10: 2Technical Details · 2026-02-09: 1Technical Details · 2026-02-10: 302-0902-1003-07
Signal classification2 categories
Disclosure
480.0%
Patch
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-02-091
Disclosure1
2026-02-103
Disclosure2Patch1
2026-03-071
Disclosure1
Full discourse5 posts
  • CCB Alert@CCBalert
    Patch

    Warning: multiple critical in #FUXA #SCADA #ICS CVE-2026-25939, CVE-2026-25893, CVE-2026-25894, CVE-2026-25895 & CVE-2026-25938 CVSS: 10.0-9.3 Network based attackers can cause full system compromise. Update to 1.2.11 or later https://github.com/frangoteam/FUXA/releases/tag/v1.2.11 #Patch #Patch #Patch

    Post summary

    A warning about multiple critical CVEs in FUXA SCADA/ICS with CVSS scores, advising users to update to version 1.2.11 or later via the provided GitHub link.

    01000209
    7.2K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-25894 Unauthenticated Remote Code Execution in FUXA SCADA Software Before 1.2.10 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-25894

    Post summary

    A new CVE (CVE-2026-25894) identifies an unauthenticated remote code execution flaw in FUXA SCADA software versions prior to 1.2.10, with no reported PoC, exploit tool, or patch details.

    0001086
    4.0K followersView on X
  • DailyCVE@dailycve
    Disclosure

    🔴 FUXA, Hardcoded JWT Secret, #CVE-2026-25894 (Critical) https://dailycve.com/fuxa-hardcoded-jwt-secret-cve-2026-25894-critical/

    Post summary

    The text announces the discovery of CVE‑2026‑25894, highlighting a critical vulnerability involving a hard‑coded JWT secret.

    0000052
    166 followersView on X
  • OffSeq | Adversary Tactics for Cyber Resilience@offseq
    Disclosure

    🚨 CRITICAL: CVE-2026-25894 in frangoteam FUXA (<1.2.10) lets unauthenticated attackers gain admin access & execute code. Patch ASAP! 🛡️ Industrial environments at risk. https://radar.offseq.com/threat/cve-2026-25894-cwe-321-use-of-hard-coded-cryptogra-a10e5fe5 #OffSeq #ICS #Vu... https://t.co/xzrWww0Gy2

    Post summary

    The tweet announces a critical vulnerability (CVE‑2026‑25894) in frangoteam FUXA, noting unauthenticated admin access and code execution, and urges immediate patching for industrial environments.

    0000046
    268 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-25894 FUXA is a web-based Process Visualization (SCADA/HMI/Dashboard) software. An insecure default configuration in FUXA allows an unauthenticated, remote attacker to gain… https://www.cve.org/CVERecord?id=CVE-2026-25894

    Post summary

    The post announces CVE-2026-25894, highlighting that FUXA’s insecure default configuration permits unauthenticated remote attackers to gain access, but it does not provide PoC, exploit, or patch information.

    00000212
    56.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appfrangoteamfuxa---

Explore more