CVE-2026-82918

Summary

XG VisionTerminal and XG-X VisionTerminal provided by Keyence Corporation improperly restrict XML external entity references. If a user opens a specially crafted setting file, the sensitive information stored in the system where XG VisionTerminal or XG-X VisionTerminal is installed may be disclosed.

Affected Software

VendorProductVersion RangeStatus
Keyence CorporationXG-X VisionTerminalVer.3.6.0000 and earlieraffected
Keyence CorporationXG VisionTerminalVer.5.5.0010 and earlieraffected

Weaknesses

  • CWE-611: Improper restriction of XML external entity reference

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References