CVE-2026-5434: Honeywell International Inc Control Network Module Cnm

Medium severity, CVSS 5.9. EPSS: 0.3% chance of exploitation in the next 30 days.

Honeywell Control Network Module (CNM) contains insertion of sensitive information into an unintended directory. An attacker could exploit this vulnerability through probing system files, potentially resulting in unintended access to protected data. Honeywell recommends updating to the most recent version of this product, service or offering [200.1]. The CNM versions affected are from [100.1, 101.1, 110.1, and 110.2].

Affected products

Published 2026-05-21. Last modified 2026-07-30.