CVE-2026-47720 | frangoteam FUXA up to 1.3.1 TDengine DAQ storage connector index.js escapeTdString sids sql injection
A vulnerability marked as critical has been reported in frangoteam FUXA up to 1.3.1. This vulnerability affects the function escapeTdString of the file server/runtime/storage/tdengine/index.js of the component TDengine DAQ storage connector. The manipulation of the argument sids leads to sql injection.
This vulnerability is referenced as CVE-2026-47720. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More