PatchSiren

Inductive Automation CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Inductive Automation CVE published 2026-03-12

CVE-2025-13913

CVE-2025-13913 is a medium-severity issue in Inductive Automation Ignition Software <8.3.0 where a privileged user importing an external file can trigger embedded malicious code during deserialization. CISA published the advisory on 2026-03-12 and issued a minor revision on 2026-03-13 to correct a reference typo. The supplied CVSS 3.1 vector is AV:A/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H, reflecting a prerequisit [truncated]