CVE-2026-77393: Inductive Automation Ignition
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
In Ignition 8.1.53 and earlier, the Gateway "Create Project Role(s)" setting shipped blank, which permitted any authenticated user to create projects (if they can execute gateway scripts). Ignition 8.1.54 restricts project creation to Designer sessions and no longer relies on this setting. The 8.3 series is not affected.
Affected products
- Inductive Automation Ignition: up to and including 8.1.53
Published 2026-09-04. Last modified 2026-09-08.