Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Armatura LLC has released Armatura One V4.7.2, which resolves this issue. Users should upgrade from V4.7.1 or earlier to V4.7.2. Armatura LLC has released Armatura One V4.6.1_USA, which resolves this issue. Users of the USA release line should upgrade from V4.3.1_USA or earlier to V4.6.1_USA. Armatura LLC recommends contacting official technical support for guidance on obtaining and applying the upgrade.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 02 Oct 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Armatura One's message broker logs client connection credentials and the associated password in plain text during normal operation. Any party with read access to this log, or to a backup or support bundle that includes it, can obtain the logged credential. | |
| Title | Armatura LLC Armatura One Insertion of Sensitive Information into Log File | |
| Weaknesses | CWE-532 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-10-02T21:48:14.765Z
Reserved: 2026-09-21T21:13:55.828Z
Link: CVE-2026-94594
No data.
Status : Received
Published: 2026-10-02T22:16:56.463
Modified: 2026-10-02T22:16:56.463
Link: CVE-2026-94594
No data.
OpenCVE Enrichment
Updated: 2026-10-02T23:30:10Z
-
CWE-532
Insertion of Sensitive Information into Log File