johnson-controls
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting johnson-controls.
- CVE-2026-64896T2000 open debug port
- CVE-2026-34491Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Johnson Controls Metasys 14 and Johnson Controls Metasys 15 allows Cross Site Scripting. This ...8.0
- CVE-2026-27875Simplex Incident Manager Clear Test5.8
- CVE-2026-34492Airwall - Arbitrary file read6.8
- CVE-2026-64887Airwall - Hardcoded Secrets6.8
- CVE-2026-27871TL2804.1
- CVE-2026-34497FMS Employee Vulnerable to HTML Injection5.4
- CVE-2026-34495FMS Employee vulnerable to XSS5.4
- CVE-2026-21662FMS Employee Allows Upload of Unrestricted Files9.8
- CVE-2026-34490XAAP Android Data Stored in Unencrypted Database5.5
- CVE-2026-34496victor Web - Priviledge Escalation9.6
- CVE-2026-21653CCure and Victor Application Server - Server Side Request Forgery9.6
- CVE-2026-21655C-CURE 9000 and Victor application server - Deserialization of Untrusted Data9.6
- CVE-2026-21661AC2000 Uncontrolled Search Path Element8.7
- CVE-2026-21660Johnson Controls-Frick Quantum HD-Hardcoded Email Credentials Saved as Plaintext in Firmware9.8