CVE-2026-3010: Microchip Timepictra

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimePictra allows Query System for Information.This issue affects TimePictra: from 11.0 through 11.3 SP2.

Affected products

  • Microchip Timepictra: from 11.0, up to and including 11.3; version 11.3 only

Published 2026-02-28. Last modified 2026-06-17.