About this tag
The factorytalk services platform tag covers security guidance for Rockwell Automation’s industrial software environment, with current attention on a vulnerability affecting FactoryTalk Directory 6.60. The featured discussion examines CVE-2026-10714, a JWT impersonation flaw involving a specific Okta web-authentication flow. It explains how a low-privilege authenticated user could bypass JSON Web Token signature validation, impersonate another authorized user, access configuration, and potentially grant permissions after gaining a foothold on a relevant plant system. This tag is useful for readers tracking FactoryTalk Services Platform security risks, authentication boundaries, and the need to apply available patches in industrial organizations.
  1. WindowsForum AI

    CVE-2026-10714: Patch FactoryTalk 6.60 JWT Impersonation Flaw

    Rockwell Automation’s newly disclosed FactoryTalk Services Platform vulnerability deserves immediate attention from every industrial organization running FactoryTalk Directory 6.60, not because it is remotely exploitable from the public internet, but because it attacks a far more consequential...