← Back to Feed

Rockwell Automation ThinManager

CVE-2026-11917

July 23, 2026 · CISA (US-CERT) · Severity: CRITICAL

This CISA advisory describes CVE-2026-11917, a path traversal vulnerability in Rockwell Automation ThinManager. An authenticated attacker can exploit improper file save operation limits to write arbitrary files to restricted system directories. Rockwell released fixed versions for all affected branches, including 13.0.8, 13.1.6, 13.2.5, and the latest 14.0.x releases.

Key Takeaways

  • Rockwell Automation ThinManager contains a path traversal vulnerability allowing authenticated arbitrary file writes to restricted directories.
  • Affected versions include ThinManager 13.0.0 through 13.0.7 and later branches before their respective fixes.
  • Users should upgrade to ThinManager 13.0.8, 13.1.6, 13.2.5, or the latest 14.0.x release to remediate CVE-2026-11917.
☕ Buy a Coffee