CNNVD-202602-338 Information
Feb 03, 2026
cve
CNNVD ID
CNNVD-202602-338
Related CVE
- CNNVD Published: 2026-02-03
Description (Chinese)
FUXA是frangoteam开源的一个基于web的过程可视化软件。 FUXA 1.2.7版本存在安全漏洞,该漏洞源于项目导入功能未正确清理或沙箱化用户提供的脚本,可能导致远程代码执行,从而引发完全系统破解。
Description (English)
FUXA is a web-based process visualization software that is an open source for francoteam. The security gap in version 1.2.7 of FUXA, which arises from the incorrect clean-up of the project import function or from the script provided by the sandboxing user, may result in remote code implementation, which triggers a complete system breakdown.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
frangoteam
Published
2026-02-03
Last Modified
2026-02-24
References
https://github.com/frangoteam/FUXA/blob/master/server/api/projects/index.js
Patch
https://github.com/frangoteam/FUXA/releases
Share on: