A vulnerability was found in frangoteam FUXA 1.3.0 and classified as critical. The affected element is the function runScript of the file /api/runscript of the component Test Mode. Executing a manipulation of the argument test can lead to code injection.

This vulnerability is tracked as CVE-2026-43947. The attack can be launched remotely. No exploit exists.