CVE-2026-11917: Rockwell Automation Factorytalk Thinmanager
High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.
A path traversal security issue exists within Rockwell Automation ThinManager® software due to improper limitation of file save operations within the API. An authenticated attacker could exploit this vulnerability to write arbitrary files to restricted system directories outside of the application's intended directory.
Affected products
- Rockwell Automation Factorytalk Thinmanager
Published 2026-07-14. Last modified 2026-07-14.