OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-71449

CRITICAL · CVSS 9.3 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

A critical vulnerability in Johnson Controls EasyIO FS32 prior to version 3.0b63 allows attackers to exploit a hard-coded cryptographic key, enabling unauthorized access to embedded sensitive data. Organizations using this device should prioritize remediation efforts to mitigate the risk of data exposure and potential breaches. Immediate action is essential for any entity relying on this product for secure operations.

CVE
CVE-2026-71449
Severity
CRITICAL
CVSS
9.3
EPSS
0.29%

Original NVD Description

: Use of Hard-coded Cryptographic Key vulnerability in Johnson Controls EasyIO FS32 allows : Retrieve Embedded Sensitive Data. This issue affects EasyIO FS32: before 3.0b63.