CVE-2026-0963 | Arcadia Crafty Controller up to 4.7.x Operations API Endpoint path traversal
A vulnerability classified as critical was found in Arcadia Crafty Controller up to 4.7.x. Affected by this vulnerability is an unknown functionality of the component Operations API Endpoint. Executing a manipulation can lead to path traversal.
This vulnerability is registered as CVE-2026-0963. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.