CNNVD-202602-338 Information

CNNVD ID

CNNVD-202602-338

CVE-2025-69983

  • CNNVD Published: 2026-02-03

Description (Chinese)

FUXA是frangoteam开源的一个基于web的过程可视化软件。 FUXA 1.2.7版本存在安全漏洞,该漏洞源于项目导入功能未正确清理或沙箱化用户提供的脚本,可能导致远程代码执行,从而引发完全系统破解。

Description (English)

FUXA is a web-based process visualization software that is an open source for francoteam. The security gap in version 1.2.7 of FUXA, which arises from the incorrect clean-up of the project import function or from the script provided by the sandboxing user, may result in remote code implementation, which triggers a complete system breakdown.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

frangoteam

Published

2026-02-03

Last Modified

2026-02-24

References

https://github.com/frangoteam/FUXA/blob/master/server/api/projects/index.js

Patch

https://github.com/frangoteam/FUXA/releases

Share on: