CVE-2026-4130 HIGH

CVE-2026-4130: Storage of Sensitive Information in Cleartext in NI SystemLink

Vendor Ni
Product SystemLink
Weakness CWE-312 · Cleartext storage
Published September 10, 2026
Last update September 12, 2026

CVSS base score

7.1/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

What the vulnerability does

01Description

There is a storage of sensitive information in cleartext vulnerability in NI SystemLink. This vulnerability may allow an attacker with local access to obtain sensitive information stored by the system in the clear.  This vulnerability affects NI SystemLink and NI SystemLink Server 2026 Q3 and prior versions.

Key dates

02Disclosure timeline

September 10, 2026 CVE published
September 12, 2026 Record updated