Critical Infrastructure Vulnerability Intelligence

Advisories for Industrial Defenders

Compiled, structured vulnerability reports for operational technology and industrial control system security teams.

114
KEV Listed
114
Exploited
1
EPSS-Imminent
565
Total Advisories
Filter by Sector
ChemicalCommercialCommunicationsManufacturingDamsDefense IndustrialEmergency SvcsEnergyFinancial SvcsFood & AgGovernmentHealthcareInfo TechnologyNuclearTransportationWater
Filter by Status
FromToShow
UpdatedAdvisory IDTitleCVSSStatus
2026-10-06CVE-2026-94293Murrelektronik AAS Edge Client All Versions Allow Unauthenticated Remote Attacker to Read and Modify Asset Administration Shell Submodel Data9.8 CriticalUpdated
2026-10-04CVE-2026-86060MikroTik RouterOS's Argument Injection in a Command-Processing Component Allows Unauthenticated Attackers to Execute Arbitrary Commands on the Router; CISA's September 13th KEV Deadline Has Passed9.8 CriticalKEV
2026-10-04CVE-2026-85102Check Point Firewall Certificate Validation Bypass Across Site-to-Site and Remote Access VPN Carries a Lapsed September 25th CISA KEV Requirement for Covered Entities9.8 CriticalKEV
2026-10-04CVE-2026-82078PaperCut NG/MF's Unsafe Reflection Allows Remote Attackers to Manipulate Class Loading and Execute Arbitrary Code on the Print Management Server; CISA's September 14th KEV Deadline Has Passed9.1 CriticalKEV
2026-10-04CVE-2026-67276MikroTik RouterOS SSH Key Comparison Omits RSA Exponent, Letting an Attacker with a Known Modulus Authenticate as Another User8.1 HighEPSS-Imminent
2026-10-03CVE-2026-76504CISA's October 3rd KEV Remediation Deadline for Cisco Catalyst SD-WAN Manager URI Encoding Bypass Has Passed; Covered Entities Still Exposed Are Out of Compliance9.8 CriticalKEV
2026-10-02CVE-2026-86326Moxa MGate MB3170 Series Security Vulnerability Exploitable by Authenticated Admin Network Attackers (CVSS 8.6)8.6 HighUpdated
2026-10-02CVE-2026-86325Moxa MGate MB3170 Series Buffer Overflow Exploitable by Low-Privilege Network Attackers (CVSS 9.4)9.4 CriticalUpdated
2026-10-02CVE-2026-84411MikroTik RouterOS Remote Code Execution Reachable Without Authentication at CVSS 9.89.8 CriticalUpdated
2026-10-02CVE-2026-75937Digi International IX Family Security Vulnerability Reachable by Adjacent Unauthenticated Attackers (CVSS 9.4)9.4 CriticalUpdated
2026-10-02CVE-2026-71452Johnson Controls EasyIO FS32 Command Injection Exploitable by Authenticated Admin Adjacent-Network Attackers (CVSS 7.2)7.2 HighUpdated
2026-10-02CVE-2026-71449Johnson Controls EasyIO FS32 Security Vulnerability Reachable Without Authentication at CVSS 9.39.3 CriticalUpdated
2026-10-02CVE-2026-64893Johnson Controls EasyIO NEO Security Vulnerability Exploitable by Low-Privilege Network (High-Complexity Exploit) Attackers (CVSS 7.3)7.3 HighUpdated
2026-10-02CVE-2026-55396Teledyne FLIR Aware2 Security Vulnerability Reachable by Adjacent Unauthenticated Attackers (CVSS 8.5)8.5 HighUpdated
2026-10-02CVE-2026-55395Teledyne FLIR Aware2 Security Vulnerability Reachable by Adjacent Unauthenticated Attackers (CVSS 9.4)9.4 CriticalUpdated
2026-10-02CVE-2026-55393Teledyne FLIR Aware2 Path Traversal Reachable Without Authentication at CVSS 10.010.0 CriticalUpdated
2026-10-02CVE-2026-34494Johnson Controls Neo Series MVP2 Unauthenticated Security Vulnerability over Network (CVSS 7.2)7.2 HighUpdated
2026-10-02CVE-2026-34493Johnson Controls EasyIO FS32 Unauthenticated Security Vulnerability over Network (CVSS 7.2)7.2 HighUpdated
2026-10-02CVE-2026-14984Teledyne FLIR Aware2 Security Vulnerability Reachable by Adjacent Unauthenticated Attackers (CVSS 9.4)9.4 CriticalUpdated
2026-10-02CVE-2026-14983Teledyne FLIR Aware2 Denial of Service Reachable by Adjacent Unauthenticated Attackers (CVSS 7.1)7.1 HighUpdated
2026-10-02CVE-2026-104286Fortinet FortiMail Unauthenticated Arbitrary File Write via Path Traversal Carries an October 4th CISA KEV Federal Remediation Requirement for Covered Entities9.8 CriticalKEV
2026-10-02CVE-2026-102490Zammad Local Privilege Escalation to Root via Improper Privilege Management Carries an October 5th CISA KEV Federal Deadline for Covered Organizations9.8 CriticalKEV
2026-10-02CVE-2026-102489Zammad Session Fixation Enabling Remote Code Execution as the Zammad User Carries an October 5th CISA KEV Federal Deadline for Covered Organizations9.8 CriticalKEV
2026-10-01CVE-2026-8037Progress LoadMaster's Command Injection Flaw Allows Unauthenticated Remote Attackers to Execute Arbitrary OS Commands on the Load Balancer Appliance; CISA's August 10th KEV Deadline Has Passed9.6 CriticalKEV
2026-10-01CVE-2026-48710Kludex Starlette's HTTP Request Smuggling Vulnerability Allows Network-Adjacent Attackers to Bypass Security Controls and Poison Shared HTTP Connections6.5 MediumKEV
2026-10-01CVE-2025-41753WAGO 0751-9x01 Security Vulnerability Reachable Without Authentication at CVSS 9.89.8 CriticalUpdated
2026-09-30CVE-2026-91191Lantronix G520 Boot Process Disables Firmware Signature Verification, Allowing Unauthorized Software to Pass as Authentic7.5 HighUpdated
2026-09-30CVE-2026-84409Lantronix G520 Management Interface Returns Metadata Fetched Over Unencrypted HTTP, Enabling Man-in-the-Middle Attacks on Update Mechanism7.5 HighUpdated
2026-09-30CVE-2026-79625CODESYS Runtime Monitoring Race Condition Under Concurrent Client Requests Risks Incorrect Reads, Writes, and Data Corruption8.1 HighUpdated
2026-09-30CVE-2026-76992CODESYS Gateway Client Allocates Unbounded Memory from Server-Controlled Size Field, Enabling Unauthenticated Remote Denial of Service7.5 HighUpdated
2026-09-30CVE-2026-41940WebPros cPanel and WHM's Login Flow Authentication Bypass Gives Unauthenticated Attackers Unauthorized Access to the Control Panel; CISA's May 3rd KEV Deadline Has Passed9.8 CriticalKEV
2026-09-30CVE-2025-53844Siemens RUGGEDCOM APE1808 FortiOS Out-of-Bounds Write in Specific Versions Allows Attacker to Execute Unauthorized Code8.8 HighUpdated
2026-09-30CVE-2025-14272Rockwell Automation FactoryTalk PavilionX API Improper Authorization Allows Unauthenticated Actors to Execute Privileged Operations8.3 HighUpdated
2026-09-30CVE-2025-13036Rockwell Automation FactoryTalk Historian SE Login Endpoint Race Condition Allows Unauthenticated Authentication Token Harvest9.2 CriticalUpdated
2026-09-30CVE-2025-12659Siemens Simcenter Femap Memory Corruption on Parsing Specially Crafted IPT Files Enables Code Execution in Current Process7.8 HighUpdated
2026-09-30CVE-2025-11694Rockwell Automation 1769 CompactLogix Missing CIP Protocol Sequence Number Validation Enables Denial of Service by Network Attacker8.7 HighUpdated
2026-09-29CVE-2026-8066Hitachi Energy RTU500 End-of-Life Firmware Directory Traversal via File Upload Allows Unauthenticated Attacker to Write Arbitrary Files9.1 CriticalUpdated
2026-09-29CVE-2026-8065Hitachi Energy RTU500 End-of-Life Firmware Update Endpoint Bypasses Authentication, Allowing Unauthenticated Arbitrary Firmware Upload9.1 CriticalUpdated
2026-09-29CVE-2026-7395Hitachi Energy Asset Suite Exposes Configuration Upload Servlet to Unauthenticated Users Without Network Restrictions8.5 HighUpdated
2026-09-29CVE-2025-7639AVEVA Enterprise SCADA Authenticated Operator Can Tamper Serialized Data to Achieve Code Execution Under DNA Apps Security Privileges7.1 HighUpdated
2026-09-29CVE-2025-41770Phoenix Contact AXC F PLC PLCnext Engineer Communication Interface Unauthenticated Denial-of-Service Vulnerability7.5 HighUpdated
2026-09-29CVE-2025-41769Phoenix Contact AXC F PLC PROFINET Service Buffer Overflow in Default Configuration Allows Unauthenticated Remote Reboot9.8 CriticalUpdated
2026-09-29CVE-2025-12012Rockwell Automation CompactLogix and ControlLogix 5370/5570 Can Be Forced into Non-Recoverable Fault via Invalid Project File Write9.2 CriticalUpdated
2026-09-29CVE-2025-12011Rockwell Automation CompactLogix 5370 and ControlLogix 5570 Can Be Forced into Non-Recoverable Fault by Invalid Project File Write9.2 CriticalUpdated
2026-09-29CVE-2025-11698Rockwell Automation 5380/5480/5580 Controller Boot Firmware Below Version 1.072 Allows Invalid File Writes That Force Non-Recoverable Device Fault9.2 CriticalUpdated
2026-09-26CVE-2026-80152Lantronix SLC/EMG/SLB Web Management Services Endpoint Lets Authenticated Users Inject OS Commands as Root9.1 CriticalUpdated
2026-09-26CVE-2026-80151Lantronix SLC/EMG/SLB Web Management Services Endpoint Contains a Second Command Injection Path Allowing Root Execution by Authenticated Users9.1 CriticalUpdated
2026-09-26CVE-2026-80150Lantronix SLC8000/SLC9000/EMG/SLB882 WebSSH Listener Accepts Unauthenticated Server-Side Request Forgery Targets7.5 HighUpdated
2026-09-26CVE-2026-80149Lantronix WebSSH and WebTelnet Server-Side Request Forgery Lets Unauthenticated Attackers Redirect Device Requests to Internal Hosts8.6 HighUpdated
2026-09-26CVE-2026-80148Lantronix SLC/EMG/SLB882 WebSSH Listener Processes SSRF Probes From Unauthenticated Callers, Enabling Internal Network Mapping8.6 HighUpdated
2026-09-26CVE-2026-80146A Second Lantronix SLC/EMG/SLB Stack Buffer Overflow via Undocumented Interface Allows Authenticated Attackers to Execute Arbitrary Code9.9 CriticalUpdated
2026-09-26CVE-2026-67279MikroTik RouterOS Unauthenticated Session Bypass Carries Federal Remediation Deadline of September 286.5 MediumKEV
2026-09-26CVE-2023-45796Pilz PASvisu and PMI v8xx Stored Cross-Site Scripting in Runtime Component Exploitable by Low-Privilege Unauthenticated Remote Attacker8.1 HighUpdated
2026-09-26CVE-2023-45795Pilz PASvisu Builder Component Cross-Site Scripting Allows Local Unauthenticated Attacker to Gain Full Device Control7.8 HighUpdated
2026-09-25CVE-2026-93616Path Traversal Across Check Point Management and Log Server Infrastructure Missed the September 25th CISA KEV Window; Covered Organizations Are Now Out of Compliance9.8 CriticalKEV
2026-09-25CVE-2026-85046Google Chromium V8's Type Confusion Allows Remote Attackers to Execute Arbitrary Code or Escape the Browser Sandbox via a Crafted Web Page8.8 HighKEV
2026-09-25CVE-2026-81578PaperCut NG/MF's Missing Authentication on a Critical Function Allows Unauthenticated Attackers to Perform Administrative Actions Without Logging In; CISA's September 14th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-25CVE-2026-76461Cisco Secure Email Gateway's SQL Injection Flaw Allows Unauthenticated Attackers to Execute Arbitrary Database Queries and Compromise the Email Security Platform9.8 CriticalKEV
2026-09-25CVE-2026-76460Cisco Identity Services Engine's Incorrect Use of Privileged APIs Allows Unauthenticated Remote Attackers to Gain Full Administrative Control; CISA's September 19th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-25CVE-2026-75650Adobe Commerce and Magento's Template Engine Injection Flaw Allows Unauthenticated Remote Attackers to Execute Arbitrary Server-Side Code on the E-Commerce Platform10.0 CriticalKEV
2026-09-25CVE-2026-93345MikroTik RouterOS Labelled-VPN NLRI Iterator Accepts Below-Minimum Prefix Length in BGP UPDATE, Enabling On-Path Service Crash7.5 HighUpdated
2026-09-25CVE-2026-67281MikroTik RouterOS WebFig Stale Session Pointer Lets Unauthenticated Attackers Read Arbitrary Files7.5 HighUpdated
2026-09-25CVE-2026-67278MikroTik RouterOS Accepts Malformed RSA/PKCS#1 v1.5 Signatures Across TLS and SSH, and Its Trust Store Includes an e=3 Root CA, Letting a Network Attacker Forge Valid Signatures Without the Private Key9.1 CriticalUpdated
2026-09-25CVE-2026-5430WSO2 API Gateway Path Traversal Reaches Federal Remediation Deadline of September 2710.0 CriticalKEV
2026-09-25CVE-2026-33824Microsoft Windows IKE Service Extensions' Double Free Enables Unauthenticated Remote Attackers to Execute Arbitrary Code; CISA's August 21st KEV Deadline Has Passed9.8 CriticalKEV
2026-09-24CVE-2026-22619Eaton Intelligent Power Protector Uncontrolled Search Path Scores 7.87.8 HighUpdated
2026-09-24CVE-2026-21662Critical Johnson Controls FMS Employee Unrestricted File Upload Scores 9.89.8 CriticalUpdated
2026-09-24CVE-2026-89028MikroTik RouterOS SMB1 Session Setup Handler Accepts Crafted uniPwdLen That Corrupts Adjacent Heap Memory7.5 HighUpdated
2026-09-24CVE-2026-89025Belden Hirschmann HiOS Switch Platform Missing HTTP Content Validation Allows Unauthenticated Attacker to Cause Web Server Denial of Service7.5 HighUpdated
2026-09-24CVE-2026-85880Microsoft Windows' Heap-Based Buffer Overflow Allows Local Attackers to Escalate Privileges by Corrupting Heap Memory; CISA's September 22nd KEV Deadline Has Passed7.8 HighKEV
2026-09-24CVE-2026-80156Lantronix SLC8000/SLC9000/EMG Series Web Upload Path Traversal Lets Authenticated Attackers Write Arbitrary Files9.1 CriticalUpdated
2026-09-24CVE-2026-80155Lantronix SLC8000/SLC9000/EMG Series Web Upload Authentication Bypass Lets Unauthenticated Attackers Write Arbitrary Files10.0 CriticalUpdated
2026-09-24CVE-2026-80154All Lantronix SLC/EMG/SLB Firmware Versions Use Predictable Session Tokens, Letting Unauthenticated Attackers Hijack Active Sessions9.6 CriticalUpdated
2026-09-24CVE-2026-80147Lantronix SLC8000/SLC9000/EMG/SLB Stack Buffer Overflow via Undocumented Interface Allows Authenticated Attackers to Execute Arbitrary Code9.9 CriticalUpdated
2026-09-24CVE-2026-80145Lantronix SLC8000/SLC9000/EMG Series Services Permission Allows Authenticated Command Injection as Root via a Distinct Injection Path9.1 CriticalUpdated
2026-09-24CVE-2026-80144Lantronix SLC/EMG/SLB Undocumented Management Feature Lets Authenticated Attackers Execute Arbitrary Root Shell Commands9.9 CriticalUpdated
2026-09-24CVE-2026-80143A Second Undocumented Lantronix SLC/EMG/SLB Command Path Lets Authenticated Attackers Execute Arbitrary Root Shell Commands9.9 CriticalUpdated
2026-09-24CVE-2026-78312Delta DIAEnergie Path Traversal Allows Unauthenticated Attackers to Write or Overwrite Arbitrary Files9.1 CriticalUpdated
2026-09-24CVE-2026-78311Delta DIAEnergie SQL Injection Allows Authenticated Remote Code Execution8.8 HighUpdated
2026-09-24CVE-2026-78309Delta DIAEnergie SQL Injection Allows Authenticated Remote Code Execution8.8 HighUpdated
2026-09-24CVE-2026-78308Delta DIAEnergie Authentication Bypass Vulnerability Allows Unauthenticated Access to Protected Functions9.8 CriticalUpdated
2026-09-24CVE-2026-13249Honeywell PD45 Industrial Printer Web Management Interface Accepts Unauthenticated File Uploads That Enable Remote Code Execution9.8 CriticalUpdated
2026-09-24CVE-2026-13248Honeywell PD45 Industrial Printer Intermec Fingerprint Interface Lets Authenticated Admin Accounts Write Arbitrary Files, Enabling Remote Code Execution8.8 HighUpdated
2026-09-23CVE-2026-94127CISA's September 25th Remediation Deadline for F5 BIG-IP APM's OAuth Profile Heap Overflow Has Passed; Covered Entities Running Affected Virtual Servers Are Out of Compliance9.8 CriticalKEV
2026-09-23CVE-2026-93952Arista VeloCloud Orchestrator Input Validation Gap Lets Remote Attackers Reach Privileged APIs; CISA's September 25th KEV Deadline for Covered Entities Has Now Passed10.0 CriticalKEV
2026-09-23CVE-2026-82028absmach magistrala SQL Injection Reachable by Authenticated Remote Attackers with High Severity (CVSS 8.8)8.8 HighUpdated
2026-09-23CVE-2026-73176Advantech EKI-1242IEIMS Firmware V1.06.01 Web Management Interface Command Injection Lets Authenticated Remote Attackers Execute OS Commands8.6 HighUpdated
2026-09-23CVE-2026-73175Advantech EKI-1242EIMS OPC UA Gateway Session Pool Exhaustion Lets Adjacent Unauthenticated Attackers Cause Complete Denial of Service7.1 HighUpdated
2026-09-23CVE-2026-73174Advantech EKI-1242EIMS edgserver Management Protocol Transmits Credentials in Cleartext, Exposing Them to Network-Adjacent Observers8.7 HighUpdated
2026-09-23CVE-2026-73173Advantech EKI-1242EIMS edgserver Management Protocol Exposes Critical Device Management Functions Without Authentication8.8 HighUpdated
2026-09-23CVE-2026-73172Advantech EKI-1242EIMS edgserver Management Service Unauthenticated OS Command Injection Allows Remote Root Execution9.3 CriticalUpdated
2026-09-23CVE-2026-73171Advantech EKI-1242EIMS Backup-Restore Upload Lets Authenticated Remote Attackers Overwrite Arbitrary Device Filesystem Files8.6 HighUpdated
2026-09-23CVE-2026-73170Advantech EKI-1242EIMS Modbus CSV Import Executes Attacker-Controlled Lua Code via Crafted Upload8.6 HighUpdated
2026-09-23CVE-2026-73167Advantech EKI-1242IEIMS Web Management Interface Contains a Second OS Command Injection Path Exploitable by Authenticated Remote Attackers8.6 HighUpdated
2026-09-23CVE-2026-73166Advantech EKI-1242IEIMS Web Management Interface Code Injection Lets Authenticated Remote Attackers Execute Arbitrary OS Commands8.6 HighUpdated
2026-09-23CVE-2026-73165Advantech EKI-1242IEIMS Web Management Interface Has a Third Command Injection Path Exploitable by Authenticated Remote Attackers8.6 HighUpdated
2026-09-23CVE-2026-73164Advantech EKI-1242IEIMS Web Management Interface Contains a Fourth OS Command Injection Path Exploitable by Authenticated Remote Attackers8.6 HighUpdated
2026-09-23CVE-2026-73163Advantech EKI-1242IEIMS Web Management Interface Authenticated Command Injection Allows Remote OS Command Execution via Web Interface8.6 HighUpdated
2026-09-23CVE-2026-53985Ground Station Prior to 0.6.0 Socket.IO service_control Handler Allows Unauthenticated Peer to Force Service Shutdown7.5 HighUpdated
2026-09-23CVE-2026-53984Ground Station Prior to 0.6.0 Socket.IO database_backup Handler Allows Unauthenticated Peer to Destroy Database and Inject Arbitrary Data9.1 CriticalUpdated
2026-09-23CVE-2026-53983Ground Station Orbital-Source Configuration Path Accepts Unauthenticated Socket.IO SSRF Requests, Causing Outbound HTTP Requests to Attacker-Chosen Destinations8.6 HighUpdated
2026-09-23CVE-2026-19535Advantech EKI-1242IEIMS LuCI Administrative Interface CSRF Lets Unauthenticated Attackers Perform Unauthorized State Changes via Logged-In Users8.6 HighUpdated
2026-09-23CVE-2026-19438ABB Mint Workbench I Path Traversal Lets Unauthenticated Remote Attackers Access Sensitive Files (CVSS 7.5)7.5 HighUpdated
2026-09-22CVE-2026-9586Sangoma Switchvox's SQL Injection Vulnerability Allows Unauthenticated Remote Attackers to Execute Arbitrary Database Queries and Compromise the Telephony Platform9.8 CriticalKEV
2026-09-22CVE-2026-9198IBM Langflow's Code Injection Flaw Allows Unauthenticated Remote Attackers to Execute Arbitrary Code on the AI Workflow Platform; CISA's August 7th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-9082Drupal Core's SQL Injection via Specially Crafted Database Abstraction API Requests Enables Privilege Escalation and Remote Code Execution; CISA's May 27th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-86218N-able N-central's Static Code Injection Flaw Allows Remote Attackers to Inject and Execute Arbitrary Code on the RMM Platform Without Prior Authentication9.8 CriticalKEV
2026-09-22CVE-2026-85706GitLab Community and Enterprise Edition's Path Traversal Flaw Allows Unauthenticated Remote Attackers to Read Arbitrary Files on the Server and Fully Compromise the GitLab Instance10.0 CriticalKEV
2026-09-22CVE-2026-83549SonicWall SMA1000 Appliances' OS Command Injection Allows Authenticated Local Attackers to Execute Arbitrary Commands with Root Privileges; CISA's September 5th KEV Deadline Has Passed7.8 HighKEV
2026-09-22CVE-2026-83548SonicWall SMA1000 Appliances' Server-Side Request Forgery Allows Unauthenticated Remote Attackers to Reach Internal Services and Compromise the Secure Mobile Access Gateway; CISA's September 5th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-82329JFrog Artifactory Carries a 9.8 Critical Improper Authentication Flaw That Lets Unauthenticated Attackers Bypass Login Controls on the Artifact Repository9.8 CriticalKEV
2026-09-22CVE-2026-73570Zimbra Collaboration Suite's OS Command Injection Allows Authenticated Attackers to Execute Arbitrary Commands on the Email Server with Elevated Privileges; CISA's August 24th KEV Deadline Has Passed8.9 HighKEV
2026-09-22CVE-2026-72898Metabase's SQL Injection Flaw Allows Unauthenticated Attackers to Execute Arbitrary Database Queries and Achieve Full Platform Compromise; CISA's August 14th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-6973Ivanti Endpoint Manager Mobile's Improper Input Validation Allows a Remotely Authenticated Administrator to Execute Code Remotely; CISA's May 10th KEV Deadline Has Passed7.2 HighKEV
2026-09-22CVE-2026-68820Microsoft Windows Ancillary Function Driver for WinSock's Use-After-Free Allows a Local Attacker to Gain Elevated Privileges via a Freed Memory Reference; CISA's August 25th KEV Deadline Has Passed7.0 HighKEV
2026-09-22CVE-2026-65400Apple macOS's Improper Authentication Flaw Allows a Network Attacker to Bypass Login Controls and Gain Unauthorized Access to the Operating System; CISA's August 21st KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-64849MLflow's Server-Side Request Forgery Flaw Allows Remote Attackers to Use the ML Platform Server as a Proxy to Access Internal Services and Steal Credentials; CISA's September 2nd KEV Deadline Has Passed9.3 CriticalKEV
2026-09-22CVE-2026-63077JetBrains TeamCity's Deserialization of Untrusted Data Allows Unauthenticated Remote Attackers to Execute Arbitrary Code on the CI/CD Server; CISA's August 8th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-63030WordPress Core Input Interpretation Conflict Exploited in the Wild Carries a Lapsed July 24th CISA KEV Mandate for Covered Entities9.8 CriticalKEV
2026-09-22CVE-2026-60137WordPress Core SQL Injection Enabling Database Access Joins CISA's Known Exploited Vulnerabilities Catalog; Covered Entities Past the August 4th Remediation Deadline5.9 MediumKEV
2026-09-22CVE-2026-60004Gitea's Code Injection Vulnerability Allows Unauthenticated Remote Attackers to Execute Arbitrary Code on the Repository Platform; CISA's August 28th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-59310Broadcom VMware vCenter's Path Traversal Flaw Allows Unauthenticated Remote Attackers to Access Files Outside the Web Root and Potentially Compromise the Virtualization Platform; CISA's August 21st KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-56291Balbooa Forms Unrestricted File Upload Requiring No Authentication Has Missed CISA's July 13th KEV Remediation Deadline; Covered Entities Are Now Out of Compliance9.8 CriticalKEV
2026-09-22CVE-2026-56290Joomlack Page Builder Lets Unauthenticated Users Upload Arbitrary Files, Enabling Remote Code Execution; CISA's July 10th KEV Mandate Has Lapsed9.8 CriticalKEV
2026-09-22CVE-2026-55040Microsoft SharePoint's Weak Authentication Allows Attackers to Bypass Login Controls and Gain Unauthorized Access to SharePoint Sites and Data; CISA's August 21st KEV Deadline Has Passed9.1 CriticalKEV
2026-09-22CVE-2026-50751Check Point Security Gateway's IKEv1 Key Exchange Flaw Lets Unauthenticated Attackers Establish Remote Access VPN Tunnels Without a Valid Password; CISA's June 11th KEV Deadline Has Passed9.3 CriticalKEV
2026-09-22CVE-2026-48939iCagenda Joomla Event Calendar Extension Accepts Unrestricted File Uploads Without Authentication, Enabling Remote Code Execution; CISA's July 13th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-48908JoomShaper SP Page Builder Accepts Arbitrary File Uploads from Unauthenticated Users; CISA's July 10th KEV Deadline for Covered Entities Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-48907Joomla Content Editor Plugin Exposes Privileged Functions Without Proper Authorization; CISA's June 19th KEV Deadline for Covered Entities Has Lapsed9.8 CriticalKEV
2026-09-22CVE-2026-48558SimpleHelp Accepts Unverified Cryptographic Signatures, Letting Remote Attackers Bypass Authentication; CISA's July 2nd KEV Deadline for Covered Entities Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-48172Any cPanel User Can Escalate Privileges Through LiteSpeed's Plugin; CISA's May 29th KEV Remediation Requirement for Covered Entities Has Expired9.8 CriticalKEV
2026-09-22CVE-2026-46817Oracle E-Business Suite's Improper Privilege Management in Oracle Payments Allows an Unauthenticated Network Attacker to Take Over the Payments Module via HTTP; CISA's July 18th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-45498Microsoft Defender's Unspecified Vulnerability Allows for Denial of Service; CISA's June 3rd KEV Deadline Has Passed4.0 MediumKEV
2026-09-22CVE-2026-45247Mirasvit Full Page Cache Warmer's Deserialization Flaw Lets Unauthenticated Attackers Reach Remote Code Execution via a Crafted PHP Object in the CacheWarmer Cookie; CISA's June 6th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-42897Microsoft Exchange Server's Outlook Web Access Cross-Site Scripting Flaw Executes Arbitrary JavaScript When Interaction Conditions Are Met; CISA's May 29th KEV Deadline Has Passed8.1 HighKEV
2026-09-22CVE-2026-42018JFrog Artifactory's Improper Authentication Allows Network-Based Attackers to Bypass Login Controls and Gain Unauthorized Access to the Artifact Repository7.5 HighKEV
2026-09-22CVE-2026-42016JFrog Artifactory's Incorrect Authorization Allows Authenticated Users to Access Artifacts and Repositories Outside Their Permitted Scope8.1 HighKEV
2026-09-22CVE-2026-41091Microsoft Defender's Link Following Flaw Enables an Authorized Attacker to Elevate Privileges Locally; CISA's June 3rd KEV Deadline Has Passed7.8 HighKEV
2026-09-22CVE-2026-39987Marimo's Pre-Authentication Flaw Gives Unauthenticated Attackers Shell Access and Arbitrary Command Execution; CISA's May 7th KEV Remediation Requirement for Covered Entities Has Long Lapsed9.8 CriticalKEV
2026-09-22CVE-2026-39808Fortinet FortiSandbox's OS Command Injection Gives Unauthenticated Attackers Remote Code Execution via Crafted HTTP Requests; CISA's July 19th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-35616Fortinet FortiClient EMS Access Control Bypass Entered CISA's Known Exploited Vulnerabilities Catalog with an April 9th Federal Deadline That Has Long Passed9.8 CriticalKEV
2026-09-22CVE-2026-35273Oracle PeopleSoft Enterprise PeopleTools' Missing Authentication for a Critical Function Allows Unauthenticated Attackers to Take Over the Platform; CISA's June 15th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-34926Pre-Authenticated Local Attackers Can Use Relative Path Traversal in Trend Micro Apex One to Modify Key Configuration Data; CISA's June 4th KEV Mandate for Covered Entities Has Lapsed6.7 MediumKEV
2026-09-22CVE-2026-34910Network-Adjacent Attackers Can Inject Commands into Ubiquiti UniFi OS Through an Input Validation Flaw; CISA's June 26th KEV Remediation Window Has Closed for Covered Entities10.0 CriticalKEV
2026-09-22CVE-2026-34909Ubiquiti UniFi OS's Path Traversal Lets a Network-Adjacent Attacker Access Files on the Underlying System and Manipulate an Underlying Account; CISA's June 26th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-34908Ubiquiti UniFi OS's Improper Access Control Lets a Network-Adjacent Attacker Make Unauthorized Changes to the System; CISA's June 26th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-34486Apache Tomcat's Missing Encryption of Sensitive Session Data Exposes Credentials and Tokens to Network Interception; CISA's August 7th KEV Deadline Has Passed7.5 HighKEV
2026-09-22CVE-2026-34197Apache ActiveMQ's Improper Input Validation Enables Code Injection Affecting Both ActiveMQ and Broker Deployments; CISA's April 30th KEV Deadline Has Passed8.8 HighKEV
2026-09-22CVE-2026-33825Microsoft Defender's Insufficient Access Control Allows an Authorized Attacker to Escalate Privileges Locally; CISA's May 6th KEV Deadline Has Passed7.8 HighKEV
2026-09-22CVE-2026-32202Microsoft Windows Shell's Protection Mechanism Failure Allows an Unauthorized Attacker to Perform Spoofing Over the Network; CISA's May 12th KEV Deadline Has Passed4.3 MediumKEV
2026-09-22CVE-2026-31431Linux Kernel Resource Mishandling That Allows Privilege Escalation Carries a Lapsed May 15th CISA KEV Mandate; Covered Entities on Unpatched Kernels Remain Out of Compliance7.8 HighKEV
2026-09-22CVE-2026-28318SolarWinds Serv-U File Transfer Server Resource Exhaustion Exploited in the Wild Carries a Lapsed June 19th CISA KEV Federal Deadline7.5 HighKEV
2026-09-22CVE-2026-25089Fortinet FortiSandbox's Unauthenticated OS Command Injection via Crafted HTTP Requests Covers Cloud and PaaS Deployments; CISA's July 19th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-21962Oracle HTTP Server and WebLogic Server Proxy Plug-in's Improper Access Control Allows Unauthenticated Network Attackers to Fully Compromise the Middleware Platform; CISA's August 27th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-21643Fortinet FortiClient EMS's SQL Injection Allows Unauthenticated Attackers to Execute Unauthorized Code via Crafted HTTP Requests; CISA's April 16th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-20316Cisco Secure Firewall Management Center Hard-Coded Password Lets Attackers Bypass Authentication; CISA's August 1st KEV Deadline for Covered Entities Has Passed5.3 MediumKEV
2026-09-22CVE-2026-20262Authenticated Path Traversal in Cisco Catalyst SD-WAN Manager Lets Remote Attackers Write Files Outside Allowed Directories; CISA's June 29th KEV Deadline Has Passed6.5 MediumKEV
2026-09-22CVE-2026-20253Splunk Enterprise's Missing Authentication on a PostgreSQL Sidecar Service Endpoint Lets Unauthenticated Users Create or Truncate Arbitrary Files; CISA's June 21st KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-20245Cisco Catalyst SD-WAN Manager's Improper Encoding Allows an Authenticated Local Attacker to Execute Arbitrary Commands as Root via a Crafted File; CISA's June 23rd KEV Deadline Has Passed7.8 HighKEV
2026-09-22CVE-2026-20230Cisco Unified Communications Manager SSRF Flaw Routes Attacker Requests to Internal Resources; CISA's June 28th KEV Deadline for Covered Entities Has Lapsed8.6 HighKEV
2026-09-22CVE-2026-20182Cisco Catalyst SD-WAN Controller and Manager's Authentication Bypass Gives Unauthenticated Remote Attackers Administrative Privileges; CISA's May 17th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-20133Cisco Catalyst SD-WAN Manager Leaks Sensitive Configuration Data to Unauthorized Users; CISA's April 23rd KEV Remediation Requirement Has Expired for Covered Entities6.5 MediumKEV
2026-09-22CVE-2026-20128Cisco Catalyst SD-WAN Manager Stores Credentials in a Recoverable Format, Enabling Credential Theft; CISA's April 23rd KEV Mandate for Covered Entities Has Lapsed7.5 HighKEV
2026-09-22CVE-2026-20122Cisco Catalyst SD-WAN Manager Exposes Privileged API Functions to Unauthorized Callers; CISA's April 23rd KEV Remediation Deadline for Covered Entities Has Long Passed5.4 MediumKEV
2026-09-22CVE-2026-20079Cisco Firewall Management Center's Authentication Bypass via an Alternate Path Grants Unauthenticated Remote Attackers Full Administrative Control; CISA's September 12th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-19490Citrix NetScaler's Authentication Bypass via an Alternate Path Allows Unauthenticated Remote Attackers to Access Protected Resources Without Valid Credentials9.8 CriticalKEV
2026-09-22CVE-2026-16232Check Point SmartConsole's Improper Authentication Allows Unauthenticated Remote Attackers to Obtain a Login Token and Authenticate with Full Administrative Privileges; CISA's July 25th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-15410SonicWall SMA1000's Code Injection Allows a Remote Authenticated Administrator to Execute Arbitrary OS Commands Under Specific Conditions; CISA's July 17th KEV Deadline Has Passed7.2 HighKEV
2026-09-22CVE-2026-15409SonicWall SMA1000 Secure Access Appliances Accept Forged Server-Side Requests, Enabling Internal Network Pivoting; CISA's July 17th KEV Remediation Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-1340Ivanti Endpoint Manager Mobile's Code Injection Vulnerability Allows Attackers to Achieve Unauthenticated Remote Code Execution; CISA's April 11th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-12569PTC Windchill and FlexPLM's Improper Input Validation Allows Unauthenticated Remote Attackers to Execute Arbitrary Code via Malicious Network Requests; CISA's June 28th KEV Deadline Has Passed9.8 CriticalKEV
2026-09-22CVE-2026-10520Ivanti Sentry's OS Command Injection Gives Remote Unauthenticated Attackers Root-Level Remote Code Execution; CISA's June 14th KEV Deadline Has Passed10.0 CriticalKEV
2026-09-22CVE-2026-0300PAN-OS Out-of-Bounds Write Enabling Code Execution Affects Both Palo Alto Networks Firewalls and Siemens RUGGEDCOM APE1808 Industrial Appliances; CISA's May 9th KEV Window Has Closed9.8 CriticalKEV
2026-09-22CVE-2026-0257PAN-OS Authentication Bypass Enabling Unauthorized VPN Tunnels Affects Palo Alto Networks Prisma Access and Siemens RUGGEDCOM APE1808; Now Listed in CISA's Known Exploited Vulnerabilities Catalog9.1 CriticalKEV
2026-09-22CVE-2026-7273Zyxel GS1900 Series Switches' CGI Program Stack-Based Buffer Overflow Allows a LAN-Side Unauthenticated Attacker to Execute OS Commands via Crafted HTTP Requests; CISA's September 24th KEV Deadline Has Passed8.8 HighKEV
2026-09-22CVE-2026-31278Suprema BioStar 2 Active Directory Settings Endpoint Exposes Service Account Credentials in Cleartext to Crafted GET Requests7.7 HighUpdated
2026-09-20CVE-2026-87886Acronis Backup's Incorrect Default Permissions Allow a Local Attacker to Access Backup Files and Configurations Not Intended for Their Account; CISA's September 19th KEV Deadline Has Passed7.8 HighKEV
2026-09-20CVE-2026-84869ConnectWise ScreenConnect's Improper Privilege Management and Missing Authorization Allow Unauthenticated Attackers to Gain Administrative Control of the Remote Support Platform; CISA's September 14th KEV Deadline Has Passed9.9 CriticalKEV
2026-09-20CVE-2026-81963Windows Update Stack Symbolic Link Following Lets Authorized Attackers Escalate Privileges Locally (CVSS 7.8)7.8 HighKEV
2026-09-20CVE-2026-67277MikroTik RouterOS's Missing Authentication for a Critical Function Allows Unauthenticated Attackers to Access and Modify Router Configuration; CISA's September 13th KEV Deadline Has Passed8.2 HighKEV
2026-09-20CVE-2026-53362Linux Kernel's Unspecified Flaw Allows Local Attackers to Gain Elevated Privileges on Affected Systems; CISA's August 30th KEV Deadline Has Passed7.8 HighKEV
2026-09-20CVE-2026-53266Linux Kernel's Out-of-Bounds Write Vulnerability Allows Local Attackers to Escalate Privileges or Cause a Kernel Crash; CISA's September 21st KEV Deadline Has Passed8.8 HighKEV
2026-09-20CVE-2026-20349Cisco Secure Firewall ASA and FTD's Heap Inspection Vulnerability Allows Remote Attackers to Extract Sensitive Memory Contents from the Firewall Device; CISA's August 14th KEV Deadline Has Passed8.6 HighKEV
2026-09-20CVE-2026-72530TrueConf Server's Code Injection Vulnerability Allows Remote Attackers to Execute Arbitrary Code on the Video Conferencing Platform; CISA's September 3rd KEV Deadline Has Passed9.0 CriticalKEV
2026-09-20CVE-2026-72529TrueConf Server's Missing Authentication on a Critical Function Allows Unauthenticated Remote Attackers to Access Administrative Capabilities; CISA's August 23rd KEV Deadline Has Passed9.8 CriticalKEV
2026-09-18CVE-2026-87491Google Chromium V8's Out-of-Bounds Write Allows Remote Attackers to Corrupt the JavaScript Engine's Heap and Execute Arbitrary Code via a Crafted Web Page8.8 HighKEV
2026-09-18CVE-2026-59822BerriAI LiteLLM's Improper Authentication Allows Unauthenticated Attackers to Access the AI Model Gateway and Interact with Configured LLM Endpoints Without Credentials8.2 HighKEV
2026-09-18CVE-2026-58704Google Pixel's Improper Authorization Flaw Allows an Attacker with Physical or Local Access to Bypass Permission Controls and Access Protected Device Functions8.8 HighKEV
2026-09-18CVE-2026-49869Kestra OSS's OS Command Injection Flaw Lets Unauthenticated Remote Attackers Execute Arbitrary Commands on the Workflow Orchestration Server with Full System Privileges10.0 CriticalKEV
2026-09-18CVE-2026-80469Sick AG Sentio Creator Device Manager Extension Bypasses Driver Signature Verification, Allowing Malicious Package to Execute Arbitrary Code8.3 HighUpdated
2026-09-18CVE-2026-3869Schneider Electric Modicon M580 Incorrect Authentication Algorithm Implementation Risks Full PLC Compromise When a Lower Application Level Project Is Running9.2 CriticalUpdated
2026-09-18CVE-2026-27563Crafted GET Request to the Datastorage API Lets Admin Credentials Trigger Root Command Execution on Pepperl+Fuchs ICE-Series IO-Link Masters7.2 HighUpdated
2026-09-18CVE-2026-27558Operator Access to the IODD File Removal Endpoint on Pepperl+Fuchs ICE-Series IO-Link Masters Allows Root Command Injection8.8 HighUpdated
2026-09-18CVE-2026-27548Command Injection in the IODD Port Info Endpoint Grants Root Access on Pepperl+Fuchs ICE-Series IO-Link Masters to Any User or Operator Account8.8 HighUpdated
2026-09-18CVE-2026-15579Moxa TN-4500B Series Ethernet Switch Out-of-Bounds Write in Web Login Username Field Allows Remote Unauthenticated Attacker to Execute Code8.8 HighUpdated
2026-09-18CVE-2023-5778ABB Freelance Controller DCP, AC700, AC800, and AC900 Improper Length Parameter Handling Allows Remote Denial of Service7.5 HighUpdated
2026-09-16CVE-2026-53006Linux Kernel ICMPv6 Use-After-Free via Pointer Cached Before pskb_pull on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-09-16CVE-2026-27565Unauthenticated IODD File Upload on Pepperl+Fuchs ICE-Series IO-Link Masters Executes a Root Shell Script That Persists Across Reboots9.8 CriticalUpdated
2026-09-16CVE-2026-27564Pepperl+Fuchs ICE-Series IO-Link Masters Run Injected Root Commands When Admin Credentials Submit a Crafted PUT Request to the Datastorage API7.2 HighUpdated
2026-09-16CVE-2026-27562Admin-Level PUT Requests to the IODD Configuration API Execute Injected Commands as Root on Pepperl+Fuchs ICE-Series IO-Link Masters7.2 HighUpdated
2026-09-16CVE-2026-27561Admin Credentials Enable Root Command Injection via the IODD Config GET API on Pepperl+Fuchs ICE-Series IO-Link Masters7.2 HighUpdated
2026-09-16CVE-2026-27560Admin-Credentialed DELETE Requests to Pepperl+Fuchs ICE-Series IO-Link Masters' Status API Carry Injected Commands Executed at Root7.2 HighUpdated
2026-09-16CVE-2026-27559User Credentials Are Enough to Inject Root-Level Commands via the Status Data API on Pepperl+Fuchs ICE-Series IO-Link Masters8.8 HighUpdated
2026-09-16CVE-2026-27557Unauthenticated Path Traversal in Pepperl+Fuchs ICE-Series IO-Link Masters Exposes the Device's SSH Server Private Keys7.5 HighUpdated
2026-09-16CVE-2026-27556Operator Cookie Enables Arbitrary PHP Code Execution on Pepperl+Fuchs ICE-Series IO-Link Masters via Local File Inclusion in the IODD Parameter Save Endpoint8.8 HighUpdated
2026-09-16CVE-2026-27555A Valid User Cookie Triggers Arbitrary PHP Code Execution on Pepperl+Fuchs ICE-Series IO-Link Masters via Local File Inclusion in the IODD Port Info Endpoint8.8 HighUpdated
2026-09-16CVE-2026-27554IODD Parameter Save Endpoint on Pepperl+Fuchs ICE-Series IO-Link Masters Accepts Injected Commands from Operator-Level Accounts, Yielding Root Access8.8 HighUpdated
2026-09-16CVE-2026-27552Pepperl+Fuchs ICE-Series IO-Link Masters Allow Low-Privileged Users to Upload Arbitrary IODD Files via a Missing Authorization Check, Enabling Device Manipulation or Crashes8.1 HighUpdated
2026-09-16CVE-2026-27551User-Level Credentials Give Root Shell on Pepperl+Fuchs ICE-Series IO-Link Masters via the Parameter Management Endpoint8.8 HighUpdated
2026-09-16CVE-2026-27550Operator Credentials Can Inject Root-Level OS Commands via the Field_Shadow_Password Handler on Pepperl+Fuchs ICE-Series IO-Link Masters8.8 HighUpdated
2026-09-16CVE-2026-27549Operator-Level Credentials Suffice to Run Root Commands on Pepperl+Fuchs ICE-Series IO-Link Masters via the IODD Upload Endpoint8.8 HighUpdated
2026-09-16CVE-2026-27547IODD Menu Info Request on Pepperl+Fuchs ICE-Series IO-Link Masters Passes Unvalidated Parameters to Root-Level Commands, Reachable with User-Level Credentials8.8 HighUpdated
2026-09-16CVE-2026-27546The _account_log Function in Pepperl+Fuchs ICE-Series IO-Link Masters Lets Unauthenticated Attackers Log In as Admin Regardless of Account Configuration9.8 CriticalUpdated
2026-09-15CVE-2026-46116Linux Kernel xfrm_state List Defensively Not Unhashed in __xfrm_state_delete on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-14CVE-2026-62647Siemens Reyrolle 7SR5 Weak Random Number Generator Produces Low-Entropy Session Identifiers7.4 HighUpdated
2026-09-14CVE-2026-34223Siemens Desigo CC ClickOnce Client Code Injection Vulnerability Across All Versions from V6 Through V98.2 HighUpdated
2026-09-11CVE-2026-81822AVEVA Pipeline Integrity Monitor Weak Password Hashing in PIMBoards Project Files Allows Credential Recovery via Brute Force8.4 HighUpdated
2026-09-11CVE-2026-81821AVEVA Pipeline Integrity Monitor Hard-Coded Encryption Key in PIMBoards Project Files Exposes Sensitive Information to File Read Access8.4 HighUpdated
2026-09-10CVE-2026-62646Siemens Reyrolle 7SR5 Session Identifier Generated with Insufficient Randomness, Enabling Token Prediction Attacks7.4 HighUpdated
2026-09-10CVE-2026-53002Linux Kernel netfilter Conntrack sprintf Usage Risks Buffer Overrun on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-09-10CVE-2026-50064Siemens Solid Edge Out-of-Bounds Write During File Parsing Enables Code Execution Under Current User Process Context7.8 HighUpdated
2026-09-10CVE-2026-50063Siemens Solid Edge Out-of-Bounds Read During File Parsing Can Lead to Code Execution Under Current User Process Context7.8 HighUpdated
2026-09-10CVE-2026-50062Siemens Solid Edge Out-of-Bounds Read During File Parsing Can Lead to Code Execution Under Current User Context7.8 HighUpdated
2026-09-10CVE-2026-50061Siemens Solid Edge Use-After-Free During File Parsing Enables Code Execution Under Current User Process Context7.8 HighUpdated
2026-09-10CVE-2026-50060Siemens Solid Edge Use-After-Free During File Parsing Enables Code Execution Under Current User Process Context7.8 HighUpdated
2026-09-10CVE-2026-50059Siemens Solid Edge Out-of-Bounds Write During File Parsing Enables Code Execution Under Current User Process Context7.8 HighUpdated
2026-09-10CVE-2026-50058Siemens Solid Edge Out-of-Bounds Read on Parsing Specially Crafted Files Can Lead to Code Execution7.8 HighUpdated
2026-09-09CVE-2026-9854Hitachi Energy MicroSCADA X SYS600 Engineering Tool Access Can Escalate Privileges to Administrator on the Underlying Windows Host7.8 HighUpdated
2026-09-09CVE-2026-9853Hitachi Energy MicroSCADA X SYS600 RBAC Flaw Lets Any OS-Authenticated User Access and Modify Application Objects Without Application Login7.8 HighUpdated
2026-09-09CVE-2026-9852Hitachi Energy MicroSCADA X SYS600 CSV Injection Vulnerability Allows Authenticated Users to Inject Formulas into Exported Spreadsheets7.8 HighUpdated
2026-09-09CVE-2026-8044Schneider Electric EcoStruxure IT Data Center Expert Argument Injection in Privileged Account Context Enables Remote Code Execution8.6 HighUpdated
2026-09-09CVE-2026-77120Schneider Electric PowerLogic T300 OS Command Injection via Admin-Privileged Context Allows Privilege Escalation to Root8.7 HighUpdated
2026-09-09CVE-2026-67367Siemens SIMOVE Fleetmanager Path Traversal Allows Unauthenticated Attacker to Read Sensitive Files via Relative Path Manipulation8.6 HighUpdated
2026-09-09CVE-2026-62649Siemens Reyrolle 7SR5 Web Server Resource Exhaustion Under High Concurrent HTTP Request Volume Causes Denial of Service7.5 HighUpdated
2026-09-09CVE-2026-19233Schneider Electric EcoStruxure IT Data Center Expert Server-Side Request Forgery in Privileged Account Context Risks Unauthorized Command Execution8.6 HighUpdated
2026-09-09CVE-2026-11841Sick AG InspectorP Sensor AppEngine HTTP Fileaccess Allows Unauthenticated Read and Write Operations on Sensitive Filesystem Areas9.4 CriticalUpdated
2026-09-08CVE-2026-80465Siemens Mendix SAML Module JWT Algorithm Substitution Flaw Allows Unauthenticated Remote Authentication Bypass8.7 HighUpdated
2026-09-08CVE-2026-77393Inductive Automation Ignition Blank Project Role Creation Setting Allowed Any Authenticated User to Create Projects in Versions Up to 8.1.538.8 HighUpdated
2026-09-08CVE-2026-64560Linux Kernel POSIX CPU Timer Use-After-Free via Non-Leader exec() Race on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-64552Linux Kernel virtio-net receive_big() Length Bounds Check Error Allows Malicious Device to Trigger Out-of-Bounds Write on Siemens SIMATIC S7-1500 MFP8.4 HighUpdated
2026-09-08CVE-2026-64545Linux Kernel XDP Master Redirect NULL Pointer Dereference on Siemens SIMATIC S7-1500 MFP7.5 HighUpdated
2026-09-08CVE-2026-64423Linux Kernel IPv4 IGMP Use-After-Free During Network Device Teardown on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-64422Linux Kernel IPv4 TCP Reordering Sysctl and MTU Probe Size Validation Gap on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-09-08CVE-2026-64413Linux Kernel ebtables chainstack Array Not Zeroed Before Use on Siemens SIMATIC S7-1500 MFP7.0 HighUpdated
2026-09-08CVE-2026-64412Linux Kernel ebtables Module Name Not Null-Terminated Before Lookup on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-09-08CVE-2026-64411Linux Kernel ebtables Update Counter Path Does Not Null-Terminate Table Name Before Lookup on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-09-08CVE-2026-64375Linux Kernel proc ptrace_may_access Race via FD Links Not Locked by exec_update_lock on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-64317Linux Kernel ISO 9660 Rock Ridge Symlink Component Bounds Not Enforced Against SL Record on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-09-08CVE-2026-64279Linux Kernel I2C Adapter Deregistration Race Condition on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-62650Siemens Reyrolle 7SR5 Web Management Server-Side Authorization Not Enforced, Allowing Role-Based Access Control Bypass8.8 HighUpdated
2026-09-08CVE-2026-62648Siemens Reyrolle 7SR5 Web Server URL Component Length Not Validated Before Use in Pre-Authenticated HTTP Messages, Enabling Denial of Service7.5 HighUpdated
2026-09-08CVE-2026-62645Siemens Reyrolle 7SR5 Web Interface Exposes Session ID Calculation Information, Allowing Session Hijacking Without Credentials9.8 CriticalUpdated
2026-09-08CVE-2026-53400Linux Kernel I2C Adapter Registration Race Condition on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-53275Linux Kernel IPv6 Multicast MLD Query Processing Use-After-Free on Siemens SIMATIC S7-1500 MFP8.8 HighUpdated
2026-09-08CVE-2026-53268Linux Kernel netfilter conntrack_irc Out-of-Bounds Read on Command Parse Failure on Siemens SIMATIC S7-1500 MFP8.2 HighUpdated
2026-09-08CVE-2026-53239Linux Kernel xfrm Policy Inexact Bin Use-After-Free in xfrm_policy_bysel_ctx on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-53223Linux Kernel Timestamp Control Message Handling Gap in Non-Error Queue skbs on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-09-08CVE-2026-53050Linux Kernel Quota dquot_scan_active Race with Quota Deactivation on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-52999Linux Kernel netfilter nfnetlink_osf Out-of-Bounds Read in Option Matching on Siemens SIMATIC S7-1500 MFP9.1 CriticalUpdated
2026-09-08CVE-2026-52998Linux Kernel netfilter nfnetlink_osf NULL Pointer Dereference in TTL Check on Siemens SIMATIC S7-1500 MFP7.5 HighUpdated
2026-09-08CVE-2026-52986Linux Kernel SIP Conntrack NULL Pointer Dereference via Unsafe Port Parsing on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-09-08CVE-2026-52946Linux Kernel fcntl Async Signal Lock Order Inversion Between SOFTIRQ-Safe and SOFTIRQ-Unsafe Paths on Siemens SIMATIC S7-1500 MFP7.5 HighUpdated
2026-09-08CVE-2026-52943Linux Kernel sk_buff Zerocopy Reference Missing in pskb_carve Helpers on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-52942Linux Kernel netfilter nf_log MAC Header Dump Not Guarded Against Unset Headers on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-09-08CVE-2026-52933Linux Kernel io_uring Poll Ownership Check Uses Signed Comparison, Creating Race Condition on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-52912Linux Kernel netfilter nf_queue Bridge Device Reference Held Too Briefly in br_pass_frame_up on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-52910Linux Kernel BPF Reuseport cBPF Program Free Before RCU Grace Period on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-50093Siemens Siveillance Control Arbitrary File Upload Exploitable by Low-Privilege Authenticated Remote Attacker9.0 CriticalUpdated
2026-09-08CVE-2026-46323Linux Kernel GRO zcopy Frags Use-After-Free on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-46306Linux Kernel Flow Dissector PPPoE PFC Frames Dissected When They Should Be Skipped on Siemens SIMATIC S7-1500 MFP7.5 HighUpdated
2026-09-08CVE-2026-46303Linux Kernel ISO 9660 Rock Ridge CE Continuation Extent Not Validated Against Volume Size on Siemens SIMATIC S7-1500 MFP8.2 HighUpdated
2026-09-08CVE-2026-46300Linux Kernel SKBFL_SHARED_FRAG Marker Lost During sk_buff Coalescing on Siemens SIMATIC S7-1500 MFP Enables ESP In-Place Decrypt over Page-Cache Memory7.8 HighUpdated
2026-09-08CVE-2026-46173Linux Kernel Exit Path Race Causes Preemption of Oopsing TASK_DEAD Task on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-46037Linux Kernel IPv4 ICMP Extended Echo Reply Type Not Validated Before Pointer Use on Siemens SIMATIC S7-1500 MFP8.2 HighUpdated
2026-09-08CVE-2026-46033Linux Kernel authencesn Instance Creation Accepts Short Hash Digests That Could Lead to Incorrect Authentication on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-09-08CVE-2026-46015Linux Kernel TCP Listener Migration Race on Siemens SIMATIC S7-1500 MFP After Listening Socket Closes7.8 HighUpdated
2026-09-08CVE-2026-43501Linux Kernel IPv6 RPL Source Routing Header Recompression Buffer Headroom Not Reserved on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-09-08CVE-2026-43499Linux Kernel rtmutex Slow Lock Waiter Task Reference Incorrect in remove_waiter on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-43303Linux Kernel Page Allocator Free Path Leaves page->private Stale on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-43284Linux Kernel ESP In-Place Decrypt on Pipe-Spliced Shared Frags Risks Memory Corruption on Siemens SIMATIC S7-1500 MFP8.8 HighUpdated
2026-09-08CVE-2026-43116Linux Kernel netfilter ctnetlink Master Conntrack Access Without Sufficient Reference on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-43071Linux Kernel dcache Hashtable Out-of-Bounds Read When dhash_entries Set to 1 on Siemens SIMATIC S7-1500 MFP9.1 CriticalUpdated
2026-09-08CVE-2026-31700Linux Kernel PACKET_VNET_HDR TOCTOU Race on mmap'd vnet_hdr in tpacket_snd on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-31449Linux Kernel ext4 Extent Tree Index Bounds Validation Gap on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-09-08CVE-2026-18963Siemens Industrial Edge Management Keycloak Reset-Credentials Flow Flaw Allows Unauthenticated Account Takeover9.1 CriticalUpdated
2026-09-08CVE-2025-46418Westermo WeOS OS Command Injection via Media Definition Requires Authenticated Attacker with High Privileges7.6 HighUpdated
2026-09-03CVE-2026-78319Sauter modu680 Building Automation Controller TOCTOU Race Condition Allows Unauthenticated Remote Security Bypass9.3 CriticalUpdated
2026-09-03CVE-2026-65423open62541 OPC UA Integer Overflow in arrayDimensions Computation Allows Remote Attacker to Trigger Out-of-Bounds Write8.8 HighUpdated
2026-09-03CVE-2026-63559open62541 OPC UA Integer Overflow in arrayDimensions Computation Allows Remote Out-of-Bounds Heap Memory Read7.5 HighUpdated
2026-09-03CVE-2026-63035open62541 OPC UA TransferSubscriptions Service Heap Use-After-Free Allows Authenticated Attacker to Cause Denial of Service or Code Execution8.1 HighUpdated
2026-09-03CVE-2026-6071Rockwell Automation Arena Simulation Out-of-Bounds Write When Parsing DOE Files Enables Code Execution When a User Opens a Malicious File7.5 HighUpdated
2026-09-03CVE-2024-7956Rockwell Automation DataMosaix Private Cloud Authorization Flaw Lets Low-Privilege Users Access Other Users' Projects7.6 HighUpdated
2026-09-01CVE-2026-9637Rockwell Automation CompactLogix 5380 and ControlLogix 5580 CIP Message Input Length Validation Gap Causes Denial of Service8.7 HighUpdated
2026-09-01CVE-2026-9634Rockwell Automation Redundancy Module Configuration Tool DLL Search Order Hijack via Unquoted System Path7.0 HighUpdated
2026-09-01CVE-2026-9633Rockwell Automation Redundancy Module Configuration Tool DLL Search Order Hijack via Unquoted System Path in RM3ConfigTool.exe7.0 HighUpdated
2026-09-01CVE-2026-9625Rockwell Automation RSLinx Classic Oversized Embedded CIP Message Request Crashes Service, Requiring Manual Restart8.7 HighUpdated
2026-09-01CVE-2026-9624Rockwell Automation RSLinx Classic Integer Underflow on CIP Packet Data Length Validation Crashes Service8.7 HighUpdated
2026-09-01CVE-2026-9622Rockwell Automation RSLinx Classic Forward Close CIP Packet Handling Crash Requires Manual Service Restart8.7 HighUpdated
2026-09-01CVE-2026-9621Rockwell Automation RSLinx Classic Crashes on Malformed CIP Packet Due to Integer Overflow, Requiring Manual Service Restart9.2 CriticalUpdated
2026-09-01CVE-2026-84235Rockwell Automation 1756-ENBT Module Crashes on Crafted CIP Packet, Requiring Device Restart to Recover8.7 HighUpdated
2026-09-01CVE-2026-78317Delta DIAEnergie SQL Injection Allows Authenticated Remote Code Execution8.8 HighUpdated
2026-09-01CVE-2026-78316Delta DIAEnergie SQL Injection Allows Authenticated Remote Code Execution8.8 HighUpdated
2026-09-01CVE-2026-78315Delta DIAEnergie SQL Injection Allows Authenticated Remote Code Execution8.8 HighUpdated
2026-09-01CVE-2026-78314Delta DIAEnergie SQL Injection Allows Authenticated Remote Code Execution8.8 HighUpdated
2026-09-01CVE-2026-35535Sudo Privilege Drop Failure in setuid/setgid Not Treated as Fatal Error, Enabling Privilege Escalation During Mailer Execution7.4 HighUpdated
2026-09-01CVE-2026-19472Rockwell Automation ArmorStart LT Embedded Web Server Crashes on Crafted HTTP PUT Request, Causing Denial of Service8.7 HighUpdated
2026-09-01CVE-2026-16675Rockwell Automation FactoryTalk Activation Manager Installer Custom Action Spawns SYSTEM-Level Console Window, Enabling Privilege Escalation8.5 HighUpdated
2026-09-01CVE-2026-13336Schneider Electric NetBotz 5 OS Command Injection During System Backup Restore Lets Authenticated Admin Execute Arbitrary Linux Commands7.3 HighUpdated
2026-09-01CVE-2026-12663Rockwell Automation ControlFLASH Installer Grants Write Access to Everyone Group on Installation Directory, Enabling Arbitrary Code Execution7.0 HighUpdated
2026-09-01CVE-2025-12768Rockwell Automation FactoryTalk Historian Machine Edition Out-of-Bounds Write Accessible to Low-Privilege Adjacent Network Attackers8.6 HighUpdated
2026-09-01CVE-2024-7953Rockwell Automation DataMosaix Private Cloud Lets Any Authenticated User Self-Promote to Project Administrator and Modify Project Data8.7 HighUpdated
2026-09-01CVE-2024-7952Rockwell Automation DataMosaix Private Cloud Hardcoded Source Code Links Expose JSON Files Containing Sensitive Data Without Authentication8.7 HighUpdated
2026-09-01CVE-2024-10085Schneider Electric EcoStruxure OPC UA Server Expert Unconstrained OPC UA Request Allocation Causes Denial of Service8.2 HighUpdated
2026-08-28CVE-2026-66155Siemens Element maps-ng Cross-Site Scripting in si-map Component Affects Multiple Software Versions7.6 HighUpdated
2026-08-28CVE-2026-64629Siemens Parasolid Out-of-Bounds Read on Specially Crafted File Parse Can Lead to Code Execution7.8 HighUpdated
2026-08-28CVE-2026-59701Siemens Simcenter Femap Out-of-Bounds Read Parsing BMP Files Can Lead to Code Execution in the Current User Context7.8 HighUpdated
2026-08-28CVE-2026-59700Siemens Simcenter Femap Out-of-Bounds Read on Parsing Specially Crafted BMP Files Can Lead to Code Execution7.8 HighUpdated
2026-08-28CVE-2026-59086Siemens Simcenter Femap and Nastran Stack-Based Buffer Overflow When Parsing Specially Crafted Files Can Lead to Code Execution7.8 HighUpdated
2026-08-28CVE-2026-58115Siemens SIMATIC IoT2050 Advanced with Node-RED Does Not Enforce Authentication on Node-RED API Endpoint10.0 CriticalUpdated
2026-08-26CVE-2026-71276Magistrala Message Reader API Interpolates Unvalidated HTTP Query Parameters Directly into Raw SQL Queries7.1 HighUpdated
2026-08-26CVE-2026-71235Magistrala Rules Engine Lua Script Engine Performs No Input Validation, Allowing Authenticated Users to Execute Arbitrary Server-Side Code8.8 HighUpdated
2026-08-25CVE-2026-9128Rockwell Automation Studio 5000 Logix Designer Unquoted Search Path in External Tools Configuration Allows Low-Privilege Code Execution7.5 HighUpdated
2026-08-25CVE-2026-9127Rockwell Automation Studio 5000 Logix Designer External Tool Config File Incorrect Authorization Allows Any Authenticated User to Modify Tool Paths7.5 HighUpdated
2026-08-25CVE-2026-9108Rockwell Automation Studio 5000 Logix Designer Path Traversal via Malicious ACD Project File Allows Arbitrary File Write7.5 HighUpdated
2026-08-24CVE-2026-46333Linux Kernel ptrace Dumpability Logic Flaw Risks Privilege Escalation via Memory Image Exposure on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-08-24CVE-2026-21661Johnson Controls AC2000 Access Control System Uncontrolled Search Path Allows Authenticated Local Attacker to Leverage Configuration File Paths8.4 HighUpdated
2026-08-20CVE-2026-43038Linux Kernel IPv6 ICMP Error Generation Leaves skb2->cb[] Uncleared on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-08-17CVE-2026-25193Gallagher Command Centre Service Installer Log File Exposes Service Account Credentials During Installation8.1 HighUpdated
2026-08-11CVE-2026-33390Nozomi Networks Guardian Arc Sensor Sync Incorrectly Grants CLI Permissions to Low-Privileged Authenticated Users8.1 HighUpdated
2026-08-11CVE-2026-31984Nozomi Networks Guardian Audit Logging Missing Input Size Limit Allows Unauthenticated Attacker to Cause Denial of Service7.5 HighUpdated
2026-08-11CVE-2026-31982Nozomi Networks Guardian SAML Single Sign-On Open Redirect via Unvalidated Redirection Parameter Allows Unauthenticated Phishing Attack7.1 HighUpdated
2026-08-11CVE-2026-3014Milestone XProtect Management Server API Allows Users with Edit Permission to Execute OS Commands via Crafted Requests9.1 CriticalUpdated
2026-08-11CVE-2026-0287Palo Alto Networks PAN-OS Multiple Denial-of-Service Vulnerabilities Allow Unauthenticated Network Attacker to Disrupt Firewall Service7.5 HighUpdated
2026-08-11CVE-2026-0286Palo Alto Networks PAN-OS Management Plane Command Injection Allows Authenticated Administrator to Execute Arbitrary Root-Level OS Commands7.2 HighUpdated
2026-08-11CVE-2026-0284Palo Alto Networks PAN-OS LSVPN XML Injection Allows Unauthenticated Network Attacker to Inject Malicious Content9.9 CriticalUpdated
2026-08-11CVE-2026-0283Palo Alto Networks PAN-OS Large Scale VPN Authentication Bypass Allows Network Attackers to Bypass Security Restrictions7.2 HighUpdated
2026-08-11CVE-2026-0281Palo Alto Networks PAN-OS Web Session Token Exposed to Unauthenticated Network Attacker via Management Interface7.1 HighUpdated
2026-08-11CVE-2026-0280Palo Alto Networks PAN-OS IPv6 Packet Processing Flaw Allows Unauthenticated Attackers to Bypass Firewall Security Policy7.2 HighUpdated
2026-08-11CVE-2025-40833Siemens IE/PB LINK Null Pointer Dereference on Specially Crafted IPv4 Requests Causes Denial of Service Requiring Manual Reset7.5 HighUpdated
2026-07-31CVE-2026-44106Phoenix Contact CHARX SEC Init-Script for User Applications Allows Low-Privilege Local User to Execute Arbitrary Commands as Root7.8 HighUpdated
2026-07-31CVE-2026-44101Phoenix Contact CHARX OCPP Agent Service Missing Authentication Allows Unauthenticated Remote Attacker to Reconfigure Backend Connection9.8 CriticalUpdated
2026-07-31CVE-2026-44096Phoenix Contact CHARX SEC udhcpc Privilege Escalation Lets the charx-web User Execute Arbitrary Commands as Root7.8 HighUpdated
2026-07-31CVE-2026-44091Phoenix Contact CHARX SEC MQTT Broker Accepts Unauthenticated Malicious ID Injection That Creates Unauthorized Configuration Entries9.1 CriticalUpdated
2026-07-31CVE-2026-22620Eaton Tripp Lite PADM Authentication Component Input Validation Flaw Allows Unauthenticated Attackers to Gain Privileged Access8.6 HighUpdated
2026-07-30CVE-2026-7849Phoenix Contact CHARX SEC Unauthenticated Remote Attacker Can Inject System Configuration Commands Executed as Root9.8 CriticalUpdated
2026-07-30CVE-2026-44108Phoenix Contact CHARX SEC Firewall Terminated Prematurely During System Shutdown Creates Temporary Window Exposing Internal Services9.8 CriticalUpdated
2026-07-30CVE-2026-44107Phoenix Contact CHARX SEC Modbus TCP Reboot Command Requires No Authentication When Port Is Open7.5 HighUpdated
2026-07-30CVE-2026-44104Phoenix Contact CHARX SEC Firmware Update Process for Base Module Lacks Cryptographic Signature Verification, Allowing Unauthenticated Remote Firmware Replacement9.8 CriticalUpdated
2026-07-30CVE-2026-44100Phoenix Contact CHARX JupiCore Allows Unauthenticated Remote Attacker to Reconfigure Charging Points and Access Charging Point UIDs9.4 CriticalUpdated
2026-07-30CVE-2026-44099Phoenix Contact CHARX SEC EV Charging Controller System Configuration Flaw Lets Local Low-Privilege User Execute Arbitrary Commands as Root7.8 HighUpdated
2026-07-30CVE-2026-44098Phoenix Contact CHARX SEC OCPP Backend Firewall Bypass Enables Unauthenticated Remote OS Command Execution8.6 HighUpdated
2026-07-30CVE-2026-44097Phoenix Contact CHARX SEC Firmware Update REST Endpoint Accepts Arbitrary File Uploads from Low-Privileged Operator Accounts7.1 HighUpdated
2026-07-30CVE-2026-44095Phoenix Contact CHARX SEC Network Configuration Script Allows Low-Privilege Local User to Execute Arbitrary Commands as Root7.8 HighUpdated
2026-07-30CVE-2026-44094Phoenix Contact CHARX SEC Unauthenticated Remote Attacker Can Force Fallback to Firmware Partition with Default Credentials8.6 HighUpdated
2026-07-30CVE-2026-44093Phoenix Contact CHARX SEC Charging Controller Init-Script Flaw Enables Low-Privilege Local User to Execute Arbitrary Commands as Root7.8 HighUpdated
2026-07-30CVE-2026-44092Phoenix Contact CHARX SEC ModbusServer Accepts Unvalidated MQTT Input, Letting Unauthenticated Backend-Control Attackers Inject Malicious Data9.1 CriticalUpdated
2026-07-30CVE-2026-44090Phoenix Contact CHARX SEC Unauthenticated MQTT Broker Accessible Behind Bypassed Firewall Risks Full Device Compromise9.8 CriticalUpdated
2026-07-30CVE-2026-14837Multiple Lenze Products Improper SSH Enable File Signature Verification Allows Low-Privilege Local Attacker to Bypass SSH Controls7.8 HighUpdated
2026-07-30CVE-2026-14354Schneider Electric EcoStruxure Cybersecurity Admin Expert Insufficient Credential Protection Allows Authentication Bypass and Unauthorized Credential Modification8.7 HighUpdated
2026-07-30CVE-2026-14169ads-tec Industrial IT DVG-IRF Incorrect Behavior Order Allows Low-Privilege Remote Attacker to Overwrite Existing User Passwords8.1 HighUpdated
2026-07-30CVE-2026-14168ads-tec Industrial IT DVG-IRF Missing Authorization at Configuration Table Insertion Path Grants Low-Privileged Users Full Administrator Access8.8 HighUpdated
2026-07-30CVE-2026-14167ads-tec Industrial IT DVG-IRF Router Incorrect Authorization Lets Low-Privileged Remote Users Make Administrator-Level Configuration Changes8.8 HighUpdated
2026-07-30CVE-2026-12927Schneider Electric IGSS Definition Out-of-Bounds Write in Malicious CGF File Import Risks Arbitrary Code Execution8.4 HighUpdated
2026-07-30CVE-2026-0667Schneider Electric SCADAPack Failure to Handle Unusual Communication Conditions Risks Arbitrary Code Execution and Full Data Loss9.3 CriticalUpdated
2026-07-28CVE-2026-16812Arista VeloCloud Orchestrator On-Prem Management Plane Executes Injected OS Commands; CISA's July 30th KEV Deadline Has Passed for Covered Entities10.0 CriticalKEV
2026-07-24CVE-2026-5726Delta ASDA-Soft Stack-Based Buffer Overflow Allows Code Execution via Malicious File7.8 HighUpdated
2026-07-24CVE-2026-44469CODESYS Development System Administrative Installer Extracts Files to World-Writable Temp Directory, Enabling TOCTOU Privilege Escalation7.8 HighUpdated
2026-07-24CVE-2026-44468CODESYS Development System Administrative Installer Creates Directory with Insecure Default Permissions7.8 HighUpdated
2026-07-24CVE-2026-31790Siemens SIMATIC CN 4100 OpenSSL RSASVE Key Encapsulation Sends Uninitialized Memory Contents to Peers7.5 HighUpdated
2026-07-24CVE-2026-31789Siemens SIMATIC CN 4100 OpenSSL 32-Bit Heap Buffer Overflow When Converting Excessively Large OCTET STRING to Hexadecimal9.8 CriticalUpdated
2026-07-24CVE-2026-31403Linux Kernel NFSD Network Reference Not Held for Full /proc/fs/nfs/exports Lifetime on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-24CVE-2026-31402Linux Kernel NFSv4.0 LOCK Replay Cache Heap Overflow Corrupts Memory on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-07-24CVE-2026-31389Linux Kernel SPI Controller Registration Failure Use-After-Free on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-24CVE-2026-28387Siemens SIMATIC CN 4100 OpenSSL DANE TLSA Use-After-Free in Uncommon Server Authentication Configuration8.1 HighUpdated
2026-07-24CVE-2026-23457Linux Kernel SIP Content-Length Integer Truncation in nf_conntrack on Siemens SIMATIC S7-1500 MFP8.6 HighUpdated
2026-07-24CVE-2026-23456Linux Kernel netfilter H.323 Conntrack Out-of-Bounds Read in DecodeQ931 Integer Decode on Siemens SIMATIC S7-1500 MFP8.2 HighUpdated
2026-07-24CVE-2026-23455Linux Kernel H.323 Conntrack DecodeQ931 Reads Past Zero-Length UserUserIE Field on Siemens SIMATIC S7-1500 MFP9.1 CriticalUpdated
2026-07-24CVE-2026-23454Linux Kernel MANA Network Driver Use-After-Free in HWC Channel Teardown Reordering on Siemens SIMATIC S7-1500 MFP7.0 HighUpdated
2026-07-24CVE-2026-23434Linux Kernel NAND Flash Lock/Unlock Not Serialized Against Other NAND Operations on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-07-24CVE-2025-15620Belden HiOS Switch Platform Web Interface Denial of Service via Unauthenticated Request Allows Remote Attacker to Trigger Device Reboot8.6 HighUpdated
2026-07-24CVE-2025-14859Semtech LR11xx LoRa Transceiver Secure Boot Uses Non-Standard Hashing Algorithm That Weakens Firmware Authentication7.0 HighUpdated
2026-07-24CVE-2024-14034Belden Hirschmann HiEOS LRS11 HTTP Management Module Authentication Bypass Grants Unauthenticated Attackers Administrator Access9.8 CriticalUpdated
2026-07-24CVE-2024-14033Belden Hirschmann EagleSDV TLS Session Establishment Denial of Service via Protocol Downgrade Exploit7.5 HighUpdated
2026-07-24CVE-2023-7343Belden Hirschmann Industrial HiVision Arbitrary Code Execution Triggered When Administrator Opens Maliciously Crafted Project File7.8 HighUpdated
2026-07-24CVE-2023-7342Belden HiSecOS EAGLE Web Server Prior to 04.1.00 Privilege Escalation Allows Operator or Auditor to Gain Administrator Access8.8 HighUpdated
2026-07-24CVE-2022-4987Belden Hirschmann Industrial HiVision External Application Execution Flaw Allows Local Attacker to Escalate Privileges7.3 HighUpdated
2026-07-24CVE-2022-4986Belden Hirschmann EagleSDV Denial of Service During TLS 1.0/1.1 Session Establishment via Crafted Handshake7.5 HighUpdated
2026-07-24CVE-2021-4477Belden Hirschmann HiLCOS OpenBAT IPv6 IPsec Firewall Bypass Allows Traffic from VPN Connections to Evade Configured Rules9.1 CriticalUpdated
2026-07-24CVE-2020-37216Belden Hirschmann HiOS Devices Prior to 08.1.00 Crash on Improper EtherNet/IP Packet Length Handling7.5 HighUpdated
2026-07-23CVE-2026-8047CODESYS Runtime HTTP Request Length Check Flaw Enables Unauthenticated Remote Out-of-Bounds Write and Denial of Service7.5 HighUpdated
2026-07-23CVE-2026-8046CODESYS Runtime Insufficient Authorization on User Account Deletion Allows Low-Privilege Remote User to Delete Any User8.1 HighUpdated
2026-07-23CVE-2026-54420LiteSpeed's cPanel Plugin Follows Symlinks Across Security Boundaries to Escalate Privileges; CISA's June 18th KEV Remediation Window Has Closed for Covered Entities8.5 HighKEV
2026-07-23CVE-2026-46749Siemens SINEC INS Hardcoded Static Salt in Password Hashing Shared Across All Users Weakens Stored Credential Security7.5 HighUpdated
2026-07-23CVE-2026-46748Siemens SINEC INS Binary with cap_dac_override Capability Set Allows Low-Privilege User to Read or Write Arbitrary Files8.8 HighUpdated
2026-07-23CVE-2026-46746Siemens SINEC INS sftp Upload API Unsanitized Input Allows Authenticated Remote Users to Inject OS Commands8.8 HighUpdated
2026-07-23CVE-2026-42542TDengine taosd Integer Underflow in RPC Handler Lets Unauthenticated Attackers Crash the Server With One Packet7.5 HighUpdated
2026-07-23CVE-2026-24349Siemens SIMATIC WinCC Unified PC Runtime Stores Sensitive Information in Cleartext in Configuration Files7.1 HighUpdated
2026-07-22CVE-2026-41032Phoenix Contact CHARX SEC Controller Log Files Downloadable by Adjacent Unauthenticated Attacker, Disclosing Restricted Information7.5 HighUpdated
2026-07-22CVE-2026-35085MBS Universal Gateway User-Privilege Remote Stack Buffer Overflow in gdv-serverconfig Allows Root-Level Code Execution8.8 HighUpdated
2026-07-22CVE-2026-35084MBS Universal Gateway User-Privilege Remote Stack Buffer Overflow in dali-devconfig Allows Root-Level Code Execution8.8 HighUpdated
2026-07-22CVE-2026-35083MBS Universal Gateway User-Privilege Remote Stack Buffer Overflow in bac-serverconfig Allows Root-Level Code Execution8.8 HighUpdated
2026-07-22CVE-2026-35082MBS Universal Gateway ugw-logread Method Allows Authenticated Remote Users to Read Arbitrary Local Files8.8 HighUpdated
2026-07-22CVE-2026-35081MBS Universal Gateway ugw-logstop Method Allows Authenticated Remote Users to Terminate Arbitrary System Processes8.1 HighUpdated
2026-07-22CVE-2026-35080MBS Universal Gateway ugw-restoreinfo Method Allows Authenticated Remote Users to Delete Arbitrary Local Files8.1 HighUpdated
2026-07-22CVE-2026-35079MBS Universal Gateway ugw-restore Method Allows Authenticated Remote Users to Delete Arbitrary Local Files8.1 HighUpdated
2026-07-22CVE-2026-35078MBS Universal Gateway ugw-logstop Method Allows Authenticated Remote Users to Delete Arbitrary Local Files8.1 HighUpdated
2026-07-22CVE-2026-35077MBS Universal Gateway ugw-delete-file Method Allows Authenticated Remote Users to Delete Arbitrary Local Files8.1 HighUpdated
2026-07-22CVE-2026-35076MBS Universal Gateway bac-scanresult Method Allows Authenticated Remote Users to Delete Arbitrary Local Files8.1 HighUpdated
2026-07-22CVE-2026-35075MBS Universal Gateway Default Hard-Coded Password Recoverable from Firmware Image Allows Full Unauthenticated Access9.8 CriticalUpdated
2026-07-22CVE-2026-14448MB Connect Line Remote Portal OS Command Injection in Certificate Management View Exploitable by High-Privilege Remote Attacker7.2 HighUpdated
2026-07-22CVE-2025-14774ABB T-MAC Plus Incorrect Authorization Allows Adjacent Unauthenticated Attacker to Cause Denial of Service7.4 HighUpdated
2026-07-22CVE-2025-14773ABB T-MAC Plus Cross-Site Scripting Vulnerability Allows Authenticated Low-Privilege Attacker to Execute Malicious Scripts8.0 HighUpdated
2026-07-22CVE-2025-14772ABB T-MAC Plus Authorization Bypass via User-Controlled Key Allows Authenticated Users to Access Other Users' Resources8.8 HighUpdated
2026-07-22CVE-2025-14771ABB T-MAC Plus Exposes Sensitive Files and Directories to External Network Access9.9 CriticalUpdated
2026-07-22CVE-2024-14036Dräger Core 1.0.5 and M540 Converter Service Denial of Service via Specially Crafted Unencrypted Network Packets7.5 HighUpdated
2026-07-22CVE-2022-4992Dräger Infinity Acute Care System and M540 Patient Monitors Network Message Handling Flaw Risks Data Integrity Across Multiple Software Versions8.6 HighUpdated
2026-07-22CVE-2021-4481Dräger Protector Software Insecure File System Permissions Allow Local Attacker to Execute Arbitrary Code with System-Level Privileges8.2 HighUpdated
2026-07-22CVE-2021-4480Dräger Protector Software Insecure File System Permissions Allow Local Attacker to Execute Arbitrary Code with Elevated Privileges8.2 HighUpdated
2026-07-22CVE-2021-4478Dräger CC-Vision Basic and E-Cal Out-of-Bounds Write on Loading Crafted GDT File Can Cause Buffer Overflow8.2 HighUpdated
2026-07-22CVE-2019-25722Dräger SC Patient Monitoring Devices Contain Hard-Coded Plaintext Credentials and Local Denial-of-Service Vulnerability in Source Code7.6 HighUpdated
2026-07-22CVE-2019-25719Dräger Infinity Acute Care System and M540 Patient Monitors Contain Network Message Handling Vulnerabilities Affecting Confidentiality and Integrity8.6 HighUpdated
2026-07-22CVE-2019-25718Dräger Infinity Explorer C700 Kiosk Mode Escape Allows Privilege Escalation to Underlying Operating System8.4 HighUpdated
2026-07-21CVE-2018-25237Belden Hirschmann HiSecOS Classic Firewall HTTPS Login Buffer Overflow with RADIUS Authentication Allows Remote Crash9.8 CriticalUpdated
2026-07-21CVE-2018-25236Belden Hirschmann HiOS and HiSecOS Products HTTP Management Module Authentication Bypass Allows Unauthenticated Remote Access9.8 CriticalUpdated
2026-07-21CVE-2017-20238Belden Hirschmann Industrial HiVision 06.0.00/07.0.00 Improper Authorization Allows Read-Only Users to Gain Write Access to Managed Devices7.1 HighUpdated
2026-07-21CVE-2017-20237Belden Hirschmann Industrial HiVision Prior to 06.0.07 Authentication Bypass in Master Service Allows Unauthenticated Remote Code Execution9.8 CriticalUpdated
2026-07-21CVE-2017-20236ProSoft Technology ICX35-HWC Cellular Gateway Web Interface Input Validation Flaw Allows Unauthenticated Remote OS Command Injection9.8 CriticalUpdated
2026-07-21CVE-2017-20235ProSoft Technology ICX35-HWC Cellular Gateway Web Interface Authentication Bypass Grants Unauthenticated Attackers Administrator Access9.1 CriticalUpdated
2026-07-21CVE-2017-20234Belden GarrettCom Magnum 6K/10K Managed Switches Hard-Coded Authentication String Allows Unauthenticated Admin Access9.8 CriticalUpdated
2026-07-21CVE-2016-15058Belden Hirschmann HiLCOS Classic Platform Stores User Passwords in Recoverable Format, Exposing Credentials to Adjacent Unauthenticated Attackers8.1 HighUpdated
2026-07-21CVE-2015-10148Belden Hirschmann HiLCOS Devices Shipped with Hardcoded SSH and SSL Keys That Cannot Be Changed8.2 HighUpdated
2026-07-15CVE-2026-8314Rockwell Automation Arena Simulation Memory Corruption in siman.exe Component via Malformed File Data7.3 HighUpdated
2026-07-15CVE-2026-8313Rockwell Automation Arena Simulation Memory Corruption in linker.exe Siman Component via Malformed File Data7.3 HighUpdated
2026-07-15CVE-2026-8312Rockwell Automation Arena Simulation Memory Corruption in expmt.exe Siman Component via Malformed File Data7.3 HighUpdated
2026-07-15CVE-2026-8085Rockwell Automation Arena Simulation Memory Corruption in model.exe Component via Malformed File Data7.3 HighUpdated
2026-07-15CVE-2026-56451Siemens Opcenter X Skips JWT Algorithm Validation, Letting Unauthenticated Attackers Forge Arbitrary Tokens and Bypass Authentication; CVSS 10.010.0 CriticalUpdated
2026-07-15CVE-2026-56155Microsoft Active Directory Federation Services Insufficient Access Control Allows an Authorized Attacker to Elevate Privileges Locally; CISA's July 28th KEV Deadline Has Passed7.8 HighKEV
2026-07-15CVE-2026-54429Siemens SIMATIC S7-PLCSIM Advanced High-Volume Multicast Traffic Exhausts Device Memory, Causing Denial of Service7.4 HighUpdated
2026-07-14CVE-2026-9653Rockwell Automation 1756-EN2 and EN3 CIP Implicit Connection Validation Flaw Allows Network Attacker to Cause Denial of Service8.7 HighUpdated
2026-07-14CVE-2026-9650Schneider Electric EasyLogic T150/Saitel DR Credentials Stored in Filesystem Accessible to Unauthenticated Attackers7.5 HighUpdated
2026-07-14CVE-2026-9636Rockwell Automation ControlLogix and CompactLogix CIP Security Certificate Revocation Check Flaw Allows Revoked Certificates to Authenticate8.2 HighUpdated
2026-07-14CVE-2026-9292Rockwell Automation FactoryTalk DataMosaix Private Cloud Stored Cross-Site Scripting in Workflows Configuration Requires Admin Interaction8.4 HighUpdated
2026-07-14CVE-2026-9140Rockwell Automation 1718/1719-AENTR I/O Module UDP Unicast Network Storm Causes Device to Lose Communication8.7 HighUpdated
2026-07-14CVE-2026-5928GNU C Library ungetwc Multibyte Encoding Overlap Flaw Affects Siemens SIMATIC S7-1500 MFP and Multiple Vendor Products7.5 HighUpdated
2026-07-14CVE-2026-5450GNU C Library scanf Heap Buffer Overflow on Wide Character Match with Large Format Width Affects Siemens SIMATIC S7-1500 MFP and Other Products9.8 CriticalUpdated
2026-07-14CVE-2026-5435GNU C Library Deprecated DNS Print Functions Ignore Caller Buffer Length, Affecting Siemens SIMATIC S7-1500 MFP and Related Vendor Products7.3 HighUpdated
2026-07-14CVE-2026-46174Linux Kernel AMD Zen2 Op Cache Improper Resource Isolation on Siemens SIMATIC S7-1500 MFP Enables Cross-Process Leakage8.8 HighUpdated
2026-07-14CVE-2026-43057Linux Kernel IPv6 Tunneled Traffic Checksum GSO Fallback Incorrectly Handled on Siemens SIMATIC S7-1500 MFP7.5 HighUpdated
2026-07-14CVE-2026-43040Linux Kernel IPv6 NDISC Router Advertisement User Option Leaves Padding Fields Uninitialized on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-07-14CVE-2026-43033Linux Kernel authencesn Out-of-Place Decryption Writes hiseq at Wrong Destination on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-43030Linux Kernel BPF Verifier Incorrect Packet Pointer Safety Check on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-43028Linux Kernel netfilter x_tables Name Null-Termination Gap Risks Out-of-Bounds Read on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-07-14CVE-2026-43027Linux Kernel netfilter CT Helper Pass-Through on Expect Cleanup on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-43025Linux Kernel netfilter ctnetlink Helper Out-of-Bounds Read on New Expectations on Siemens SIMATIC S7-1500 MFP7.3 HighUpdated
2026-07-14CVE-2026-43011Linux Kernel X.25 Socket Double-Free of skb on Memory Allocation Failure on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-07-14CVE-2026-31768Linux Kernel TI ADC SPI Read Uses Non-DMA-Safe Stack Buffer on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31761Linux Kernel IIO Gyro MPU3050 Device Registration Race Condition on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31682Linux Kernel Bridge Neighbor Discovery Sends ND Options Parsing Without Linearizing skb First on Siemens SIMATIC S7-1500 MFP9.1 CriticalUpdated
2026-07-14CVE-2026-31680Linux Kernel IPv6 Flow Label Exclusive Option Freed Before RCU Teardown on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31674Linux Kernel IPv6 Routing Match addrnr Exceeding IP6T_RT_HOPS Causes Out-of-Bounds Read on Siemens SIMATIC S7-1500 MFP7.1 HighUpdated
2026-07-14CVE-2026-31669Linux Kernel MPTCP slab-use-after-free in __inet_lookup_established via Lockless ehash Table Walk on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-07-14CVE-2026-31665Linux Kernel nftables CT Timeout Object Use-After-Free on Destroy on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31649Linux Kernel stmmac Ethernet Chain Mode Integer Underflow on Jumbo Frame Transmission on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-07-14CVE-2026-31563Linux Kernel MACB Network Driver Frees TX sk_buff in IRQ-Disabled Context Using Wrong Function on Siemens SIMATIC S7-1500 MFP7.5 HighUpdated
2026-07-14CVE-2026-31533Linux Kernel TLS Encryption EBUSY Error Path Use-After-Free on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-07-14CVE-2026-31508Linux Kernel Open vSwitch Teardown Releases Network Device Before Completion on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31507Linux Kernel SMC double-free of smc_spd_priv When tee() Duplicates Splice Pipe Buffer on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31504Linux Kernel PACKET Socket Fanout Use-After-Free via NETDEV_UP Race in packet_release on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31494Linux Kernel MACB Ethernet Driver Queue Statistics Array Size Mismatch on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31485Linux Kernel SPI FSL LPSPI Teardown Order Use-After-Free on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31469Linux Kernel virtio_net Use-After-Free in Destination Route on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31452Linux Kernel ext4 Inline-to-Extents Conversion Missing When Truncation Exceeds Inline Data Size on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31450Linux Kernel ext4 jinode Published Before Initialization Completes on Siemens SIMATIC S7-1500 MFP8.8 HighUpdated
2026-07-14CVE-2026-31448Linux Kernel ext4 mkdir/mknod Logical to Physical Block Mapping Infinite Loop via Residual Data on Siemens SIMATIC S7-1500 MFP9.4 CriticalUpdated
2026-07-14CVE-2026-31447Linux Kernel ext4 Rejects Mount of bigalloc Filesystems with s_first_data_block Not Zero on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-31417Linux Kernel X.25 Packet Fragment Length Integer Overflow on Siemens SIMATIC S7-1500 MFP7.5 HighUpdated
2026-07-14CVE-2026-31414Linux Kernel netfilter Conntrack Expectation Helper Name Resolved from Wrong Source on Siemens SIMATIC S7-1500 MFP9.8 CriticalUpdated
2026-07-14CVE-2026-31396Linux Kernel MACB Network Driver PTP Clock Use-After-Free on Interface Open and Close on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-25789Siemens SIMATIC S7-1500 MFP Web Interface Filename Validation Gap on Firmware Update Page Enables Social Engineering Attack7.1 HighUpdated
2026-07-14CVE-2026-25787Siemens SIMATIC S7-1500 MFP Web Interface Stored Cross-Site Scripting in Technology Object Name Field Exploitable by Authenticated Attacker9.1 CriticalUpdated
2026-07-14CVE-2026-25786Siemens SIMATIC S7-1500 MFP Web Interface Stored Cross-Site Scripting in PLC Name Field Exploitable by Authenticated Attacker9.1 CriticalUpdated
2026-07-14CVE-2026-23449Linux Kernel Network Scheduler TEQL Double-Free with Lockless Qdisc Root on Siemens SIMATIC S7-1500 MFP7.8 HighUpdated
2026-07-14CVE-2026-12659Rockwell Automation FLEX 5000 EtherNet/IP Adapter Improper CIP Packet Exception Handling Causes Denial of Service Requiring Manual Restart8.7 HighUpdated
2026-07-14CVE-2026-10714Rockwell Automation FactoryTalk Services Platform JWT Signature Bypass in Okta Web Authentication Allows Attacker to Impersonate Users8.8 HighUpdated
2026-07-14CVE-2026-0265Palo Alto Networks PAN-OS Authentication Bypass Affects Siemens RUGGEDCOM APE1808, Scores 8.18.1 HighUpdated
2026-07-14CVE-2026-0264Critical Palo Alto Networks PAN-OS DNS Heap Overflow Affects Siemens RUGGEDCOM APE1808, Scores 9.89.8 CriticalUpdated
2026-07-14CVE-2026-0262Palo Alto Networks PAN-OS Multiple Denial-of-Service Flaws Affect Siemens RUGGEDCOM APE18087.5 HighUpdated
2026-07-14CVE-2026-0261Palo Alto Networks PAN-OS Command Injection Affects Siemens RUGGEDCOM APE1808, Scores 7.27.2 HighUpdated
2026-07-14CVE-2026-0258Palo Alto Networks PAN-OS IKEv2 SSRF Affects Siemens RUGGEDCOM APE1808, Scores 9.19.1 CriticalUpdated
2026-07-09CVE-2026-54801Siemens CPCI85 and SICORE Password Change Accepts New Password Without Verifying Current One7.2 HighUpdated
2026-07-01CVE-2026-9717Schneider Electric PowerLogic P7 OS Command Injection in Admin-Privileged Context Allows Unauthorized Command Execution7.2 HighUpdated
2026-07-01CVE-2026-9716Schneider Electric PowerLogic P7 NULL Pointer Dereference Renders HMI and Configuration Interface Unavailable via Malformed Requests7.5 HighUpdated
2026-07-01CVE-2026-14193Delta DVP80ES300T PLC Improper Array Index Validation Creates Remote Denial-of-Service Exposure7.5 HighUpdated
2026-07-01CVE-2026-12579Delta AS228T Authentication Bypass Vulnerability Allows Unauthenticated Access Without Valid Credentials7.4 HighUpdated
2026-07-01CVE-2026-12577Delta DVP80ES3 PLC Improperly Implemented Security Check Allows Bypassing Standard Protocol Verification8.7 HighUpdated
2026-07-01CVE-2026-12576Delta DVP80ES3 PLC Communication Channel Message Integrity Not Enforced, Allowing Message Substitution7.5 HighUpdated
2026-07-01CVE-2026-12575Delta DVP80ES3 PLC Improper Resource Release Creates Remote Denial-of-Service Exposure7.5 HighUpdated
2026-06-30CVE-2026-12578Delta DTMSoft Deserialization of Untrusted Data Allows Attacker to Execute Arbitrary Code8.4 HighUpdated
2026-06-30CVE-2026-10763Hitachi Energy PROMOD V Uses Unencrypted HTTP for Digipede Server Communication, Exposing Data to Interception7.0 HighUpdated
2026-06-29CVE-2026-44411Siemens Solid Edge Uninitialized Pointer Access Parsing PAR Files Can Lead to Code Execution via Malicious File Open7.8 HighUpdated
2026-06-29CVE-2026-22925Siemens SIMATIC CN 4100 TCP SYN Flood Exhausts Available Resources and Causes Denial of Service7.5 HighUpdated
2026-06-29CVE-2026-22924Siemens SIMATIC CN 4100 Accepts Unlimited Unauthenticated Connections, Enabling Remote Resource Exhaustion and Denial of Service9.1 CriticalUpdated
2026-06-29CVE-2025-40949Siemens RUGGEDCOM ROX OS Command Injection Lets Authenticated Administrators Execute Root-Level Commands Across Multiple Platform Generations9.1 CriticalUpdated
2026-06-29CVE-2025-40947Siemens RUGGEDCOM ROX Authenticated OS Command Injection Requires Low Privilege and Network Access Across Multiple Platform Generations7.5 HighUpdated
2026-06-27CVE-2024-54013Hanwha Vision Network Camera Web Server Request Handling Flaw Exposes Protected Functions to Adjacent Unauthenticated Attackers8.8 HighUpdated
2026-06-24CVE-2026-6866Schneider Electric EcoStruxure Panel Server Credentials Revert to Insecure Initial Settings After Rare Event, Disclosing Sensitive Information7.5 HighUpdated
2026-06-23CVE-2026-10521MB Connect Line mbconnect24 Hidden Configuration Method Accessible to High-Privilege Attackers Allows Critical Parameter Modification7.2 HighUpdated
2026-06-22CVE-2026-8024iba ibaPDA and ibaDatCoordinator Deserialization of Untrusted Data Allows Unauthenticated Remote Attacker to Gain Full System Access9.8 CriticalUpdated
2026-06-17CVE-2026-8398Daemon Tools Lite Contains Embedded Malicious Code; CISA Added It to KEV with a May 30th Deadline That Has Since Passed for Covered Entities9.8 CriticalKEV
2026-06-17CVE-2026-7473Arista Extensible Operating System Validation Bypass Added to CISA's Known Exploited Vulnerabilities List; Federal Remediation Window for Covered Entities Closed June 23rd5.8 MediumKEV
2026-06-17CVE-2026-6888Advantech SaaS Composer Authenticated Admin SQL Injection Allows Remote Command Execution via Specific API Interface7.2 HighUpdated
2026-06-17CVE-2026-6865Schneider Electric EasyLogic T150 Path Traversal in User-Supplied Input Allows Unauthorized Access to Sensitive Files7.1 HighUpdated
2026-06-17CVE-2026-6332Schneider Electric EcoStruxure Machine Expert HVAC Stores Sensitive Source Code in Cleartext, Risking Disclosure of Protected Intellectual Property7.5 HighUpdated
2026-06-17CVE-2026-5416Turck Managed Ethernet Switch OS Command Injection via Name Parameter Exploitable by Low-Privilege Remote Attacker8.8 HighUpdated
2026-06-17CVE-2026-5387AVEVA Pipeline Simulation 2025 Allows Unauthenticated Access to Instructor and Simulator Developer Administrative Operations9.3 CriticalUpdated
2026-06-17CVE-2026-4827Schneider Electric Easergy MiCOM C264 Insufficient Session Token Entropy Allows Network Attacker to Compromise Sessions8.7 HighUpdated
2026-06-17CVE-2026-48027Nx Console Developer Tooling Published Packages Contain Embedded Malicious Code; CISA's June 10th KEV Mandate for Covered Entities Has Passed9.8 CriticalKEV
2026-06-17CVE-2026-45321TanStack JavaScript Library Suite Added to CISA's Known Exploited Vulnerabilities Catalog; Federal Remediation Deadline for Covered Entities Was June 10th9.6 CriticalKEV
2026-06-17CVE-2026-44412Siemens Solid Edge Stack-Based Buffer Overflow Parsing PAR Files Allows Code Execution via Malicious File Open7.8 HighUpdated
2026-06-17CVE-2026-41551Siemens ROS# Path Traversal in User-Supplied Input Allows Unauthenticated Remote Attacker to Read or Write Arbitrary Files9.1 CriticalUpdated
2026-06-17CVE-2026-40852MB Connect Line mbNET/mbNET.rokey High-Privilege Config Generator OS Command Injection via Unsanitized Config Value7.2 HighUpdated
2026-06-17CVE-2026-40851MB Connect Line mbNET/mbNET.rokey USB Config File Parser Confusion Attack Allows Local Attacker to Achieve Code Execution8.4 HighUpdated
2026-06-17CVE-2026-40850MB Connect Line Remote Portal Unauthenticated SQL Injection in getAccountData Function Exposes Full Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40836MB Connect Line and Helmholz Remote Portal SQL Injection in inmessage Model DELETE Command Allows Low-Privilege Database Access7.1 HighUpdated
2026-06-17CVE-2026-40834MB Connect Line and Helmholz Remote Portal SQL Injection in dash_layout.php Dashboard Layout Function Exposes Database to Low-Privileged Attackers7.1 HighUpdated
2026-06-17CVE-2026-40833MB Connect Line and Helmholz Remote Portal SQL Injection in Dashboard Layout Function Exposes Database to Low-Privileged Remote Users7.1 HighUpdated
2026-06-17CVE-2026-40819MB Connect Line Remote Portal Unauthenticated SQL Injection in sync_data24 Task Exposes Full Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40818MB Connect Line Remote Portal Unauthenticated SQL Injection in _mb24confi_getDevice Function Exposes Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40817MB Connect Line Remote Portal Unauthenticated SQL Injection in getAlarmProfiles Function Exposes Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40816MB Connect Line Remote Portal Unauthenticated SQL Injection in Alarm Configuration Function Exposes Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40815MB Connect Line Remote Portal Unauthenticated SQL Injection in _mb24api_getUserAccount Function Exposes Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40814MB Connect Line Remote Portal Unauthenticated SQL Injection in dataapi.php _mb24confi_getTagAlarm Function Exposes Database7.5 HighUpdated
2026-06-17CVE-2026-40813MB Connect Line Remote Portal Unauthenticated SQL Injection in getLiveValues tagid Parameter Exposes Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40812MB Connect Line Remote Portal Unauthenticated SQL Injection in getLiveValues sn Parameter Exposes Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40811MB Connect Line Remote Portal Unauthenticated SQL Injection in ssoabstractservice SELECT Command Exposes Database Contents7.5 HighUpdated
2026-06-17CVE-2026-40810MB Connect Line Remote Portal Unauthenticated SQL Injection in userinfo Endpoint Exposes Full Database Contents7.5 HighUpdated
2026-06-17CVE-2026-33893Siemens Teamcenter Hard-Coded Credentials in Multiple Versions Allow Unauthenticated Remote Access to Sensitive Data7.5 HighUpdated
2026-06-17CVE-2026-33892Siemens Industrial Edge Management Authentication Sequence Weakness Allows Unauthorized Actions via Phishing in Affected Versions7.1 HighUpdated
2026-06-17CVE-2026-33862Siemens Teamcenter Cross-Site Scripting Requires Low-Privilege Attacker and User Interaction, Risks Full Session Compromise7.3 HighUpdated
2026-06-17CVE-2026-33616MB Connect Line mbconnect24 Blind SQL Injection in mb24api Endpoint Gives Unauthenticated Attackers Full Database Read Access7.5 HighUpdated
2026-06-17CVE-2026-33615MB Connect Line mbconnect24 Unauthenticated SQL Injection in setinfo Endpoint Allows Arbitrary Data Write via UPDATE Command9.1 CriticalUpdated
2026-06-17CVE-2026-33614MB Connect Line mbconnect24 Unauthenticated SQL Injection in getinfo Endpoint Exposes Full Database via SELECT Command7.5 HighUpdated
2026-06-17CVE-2026-33613MB Connect Line mbconnect24 Admin-Authenticated OS Command Injection in generateSrpArray Function Allows Full System Compromise7.2 HighUpdated
2026-06-17CVE-2026-3323Vega vegapuls Level Sensor Unsecured Configuration Interface Exposes Hashed Credentials and Access Codes to Unauthenticated Remote Attackers7.5 HighUpdated
2026-06-17CVE-2026-27668Siemens RUGGEDCOM CROSSBOW Secure Access Manager User Administrators Can Administer Groups They Belong To, Enabling Privilege Escalation8.8 HighUpdated
2026-06-17CVE-2026-27662Siemens SIMATIC HMI Unified Comfort Panel Web Browser Accessible Without Authentication When No Security Mechanism Is Configured7.7 HighUpdated
2026-06-17CVE-2026-25654Siemens SINEC NMS Password Reset Request Authorization Not Validated, Allowing Authenticated User to Reset Any Account Password8.8 HighUpdated
2026-06-17CVE-2026-24032Siemens SINEC NMS UMC Authentication Weakness Allows Forged User Identity Due to Insufficient Validation7.3 HighUpdated
2026-06-17CVE-2026-1952Delta Electronics AS320T Denial of Service via Undocumented Subfunction Call, Exploitable Remotely Without Authentication9.8 CriticalUpdated
2026-06-17CVE-2026-1951Delta Electronics AS320T Stack-Based Buffer Overflow Due to Missing Directory Name Length Check, Enabling Unauthenticated Remote Code Execution9.8 CriticalUpdated
2026-06-17CVE-2026-1950Delta Electronics AS320T Stack-Based Buffer Overflow Due to Missing File Name Length Check, Enabling Unauthenticated Remote Code Execution9.8 CriticalUpdated
2026-06-17CVE-2026-1949Delta Electronics AS320T GET/PUT Request Handler Incorrectly Calculates Stack Buffer Size, Enabling Unauthenticated Remote Code Execution via the Web Service9.8 CriticalUpdated
2026-06-17CVE-2026-11317Rockwell Automation CompactLogix and ControlLogix Crafted CIP Message Fault Causes Denial of Service Requiring Device Restart8.7 HighUpdated
2026-06-17CVE-2026-10829Moxa NPort W2150A-W4/W2250A-W4 Series Stack-Based Buffer Overflow from Insufficient Input Validation Allows Unauthenticated Remote Exploitation8.6 HighUpdated
2026-06-17CVE-2026-10825Moxa NPort 6000-G2 Series WebSocket API JSON Request Handling Flaw Allows Low-Privilege Authenticated Attacker to Cause Denial of Service7.1 HighUpdated
2026-06-17CVE-2026-0647Rockwell Automation FLEX I/O 1794-AENTR Adapter Web Server Missing Authentication Allows Unauthenticated Attacker to Change Web Interface Password8.8 HighUpdated
2026-06-17CVE-2026-0646Rockwell Automation FLEX I/O 1794-AENTR Adapter Improper CIP Protocol Memory Handling Causes Adapter Fault and Communication Loss8.7 HighUpdated
2026-06-17CVE-2025-41670Phoenix Contact AXC F PLC Runtime User-Writable Configuration Files Allow Low-Privilege Local User to Influence Privileged Service Behavior7.8 HighUpdated
2026-06-17CVE-2025-41669Phoenix Contact AXC F PLC PLCnext Store App Installation Lacks Data Verification, Allowing Low-Privilege Remote Engineer to Install Unsigned Applications8.8 HighUpdated
2026-06-17CVE-2025-40946Siemens blueplanet Solar Inverter Hard-Coded Credentials Allow Adjacent Unauthenticated Attacker to Compromise Device8.3 HighUpdated
2026-06-17CVE-2025-40899Nozomi Networks Guardian Stored Cross-Site Scripting in Assets/Nodes Custom Fields Allows Low-Privilege Authenticated Attacker to Execute Scripts8.9 HighUpdated
2026-06-17CVE-2025-40897Nozomi Networks Guardian Threat Intelligence Access Control Flaw Lets View-Only Authenticated Users Modify Records8.1 HighUpdated
2026-06-17CVE-2024-43384Phoenix Contact mGuard Firewall Improper Removal of Sensitive Information Before Storage Exposes Root Password to Low-Privilege Remote User8.0 HighUpdated
2026-06-17CVE-2024-1490WAGO PLC OpenVPN Configuration via Web Management Allows Authenticated High-Privilege Attacker to Execute Arbitrary Code7.2 HighUpdated
2026-06-17CVE-2023-3634Festo MSE6 Undocumented Test Mode Functions Exploitable by Authenticated Low-Privilege Remote Attacker for Full Data Loss8.8 HighUpdated

No advisories match this filter.