CVE-2026-94593: Armatura Llc Armatura One
High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.
Armatura One's backup and restore routine records the full database connection command, including the superuser password, in plain text in a log file on the host. Credentials disclosed by this finding can be used to access the database when access to the server operating system is available.
Affected products
- Armatura Llc Armatura One: before 4.7.2 (fixed in 4.7.2)
- Armatura Llc Armatura One Usa: before 4.6.1 (fixed in 4.6.1)
Published 2026-10-02. Last modified 2026-10-06.