CVE-2026-19471: Rockwell Automation Armorstart Lt
Medium severity, CVSS 6.9. EPSS: 0.3% chance of exploitation in the next 30 days.
Multiple stored cross-site scripting security issues exist within ArmorStart® LT. Stored XSS occurs when user input is not properly sanitized and is stored on the server, allowing an attacker to inject malicious scripts that will be executed when other users access the affected page.
Affected products
- Rockwell Automation Armorstart Lt: up to and including v2.001
Published 2026-09-01. Last modified 2026-09-01.