Vulnerability Details CVE-2026-9645
Exposed methods allow authenticated users to create and execute arbitrary JavaScript code on the server. The scripts execute with full access, enabling complete system compromise as commands are executed as root.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 24.3%
CVSS Severity
CVSS v3 Score 9.9
Products affected by CVE-2026-9645
-
cpe:2.3:a:scadabr:scadabr:1.2