Recent Vulnerabilities

Sources: amazon_linux archlinux azure_linux bitnami_vulndb capec capec_enrichment_dashboard certeu certfr circl_kev cisa_known_exploited cna_scorecard cnvd csaf_abb csaf_adstecindustrialitgmbh csaf_amd csaf_aumariestergmbhcokg csaf_baadem2mproductsgmbh csaf_beckhoffautomationgmbhcokg csaf_bendergmbhcokg csaf_bosch csaf_bsi csaf_bsi_aggregator csaf_bsi_cvd_white csaf_bsi_white csaf_bsi_wid_white csaf_carlogavazziautomation csaf_certbund csaf_certvde csaf_cisa csaf_cisa_it csaf_cisa_ot csaf_cisco csaf_claaskgaa csaf_codesysgmbh csaf_dell csaf_duraggmbh csaf_endresshauserag csaf_ericsson csaf_euchnergmbhcokg csaf_festosecokg csaf_frauschersensortechnikgmbh csaf_hancom csaf_harmaninternational csaf_helmholzgmbhcokg csaf_himapaulhildebrandtgmbh csaf_hitachi csaf_hpe csaf_huawei csaf_hydacinternationalgmbh csaf_ibm csaf_ifmelectronicgmbh csaf_janitzaelectronicsgmbh csaf_jumogmbhcokg csaf_juniper csaf_kebautomationkg csaf_kukaag csaf_lenovo csaf_lenzese csaf_mbconnectlinegmbh csaf_mettlertoledogmbh csaf_metzconnectgmbh csaf_microsoft csaf_mieleciekg csaf_moxa csaf_murrelektronikgmbh csaf_ncscnl csaf_ndaal csaf_netapp csaf_nozomi csaf_nozominetworks csaf_nvidia csaf_opcfoundation csaf_openeuler csaf_opensuse csaf_oracle csaf_ox csaf_paloalto csaf_panasonic csaf_pentagrid csaf_pepperlfuchsse csaf_phoenix csaf_pilzgmbhcokg csaf_qnap csaf_redhat csaf_samsung csaf_sauterag csaf_schneider csaf_sick csaf_siemens csaf_smasolartechnologyag csaf_suse csaf_swarcotrafficsystemsgmbh csaf_synology csaf_tibco csaf_trend csaf_trumpfsecokg csaf_trustsource csaf_tuxcare csaf_ubiquiti csaf_vartastoragegmbh csaf_vegagrieshaberkg csaf_vmware csaf_wagogmbhcokg csaf_weidmuellerinterfacegmbhcokg csaf_welotecgmbh csaf_wiesemanntheisgmbh csaf_yaskawaeuropegmbh csaf_yokogawa csaf_zyxel cve_forecast cve_icu cve_vs_github_dashboard cvelistv5 cwe_dashboard cwe_enrichment cwec debian_security_tracker drupal emb3d emb3d_dashboard epss_dashboard epss_history epss_kev_enrichment euvd_kev fedora fkie_nvd freebsd gcve gcve_enriched gcve_enrichment gcve_enrichment_dashboard gentoo github gsd jvn kev_ransomware mitre_attack moksha ndaal_kev netbsd nuclei_dashboard nuclei_enrichment nvd nvd_cpe_dictionary openbsd opencve oracle_linux ossf_malicious_packages osv_almalinux osv_alpine osv_bellsoft osv_chainguard osv_cran osv_github_actions osv_golang osv_haskell osv_hex osv_maven osv_npm osv_nuget osv_ocaml osv_ossfuzz osv_packagist osv_pub osv_rocky osv_rubygems osv_rustsec osv_swift osv_ubuntu osv_wolfi publish_stats pysec sadp_pilot ssvc ssvc_dashboard tailscale tsunami_enrichment variot vulnrichment Clear
ID Title Severity CVSS Source Updated
advisory2026-06_vde-2026-041 CODESYS PROFINET Controller - Out-of-bounds Write MEDIUM 6.5 csaf_codesysgmbh 2026-07-29
advisory2026-04_vde-2026-040 CODESYS EtherNetIP - Improper timeout handling HIGH 7.5 csaf_codesysgmbh 2026-07-13
advisory2026-10_vde-2026-057 CODESYS Control - Out-of-bounds Write HIGH 7.5 csaf_codesysgmbh 2026-06-18
advisory2026-08_vde-2026-056 CODESYS Control - Incorrect Authorization HIGH 8.1 csaf_codesysgmbh 2026-06-18
advisory2026-03_vde-2026-018 CODESYS Control V3 - Externally-controlled format string in Auditlog HIGH 7.5 csaf_codesysgmbh 2026-06-18
advisory2026-02_vde-2026-011 CODESYS Control V3 - Untrusted boot application HIGH 8.8 csaf_codesysgmbh 2026-06-18
advisory2026-09_vde-2026-055 CODESYS Development System - Incorrect Default Permissions HIGH 7.8 csaf_codesysgmbh 2026-05-26
advisory2026-07_vde-2026-052 CODESYS Visualization - Insufficiently Protected Credentials MEDIUM 5.7 csaf_codesysgmbh 2026-05-21
advisory2026-05_vde-2026-042 CODESYS Modbus TCP Server - Improper resource management MEDIUM 5.9 csaf_codesysgmbh 2026-05-12
advisory2026-01_vde-2026-012 CODESYS Installer - Possible Privilege Escalation HIGH 7.3 csaf_codesysgmbh 2026-03-10
advisory2025-10_vde-2025-100 CODESYS Control - Invalid type usage in visualization HIGH 7.5 csaf_codesysgmbh 2026-02-12
advisory2025-09_vde-2025-099 CODESYS Control - Linux/QNX SysSocket flaw MEDIUM 5.9 csaf_codesysgmbh 2026-02-12
advisory2025-11_vde-2025-101 CODESYS Development System - Deserialization of Untrusted Data HIGH 7.8 csaf_codesysgmbh 2025-12-01
advisory2025-08_vde-2025-070 CODESYS Control V3 - NULL pointer dereference HIGH 7.5 csaf_codesysgmbh 2025-10-14
advisory2025-07_vde-2025-051 CODESYS Control V3 - Exposed PKI folder HIGH 8.3 csaf_codesysgmbh 2025-09-01
advisory2025-06_vde-2025-049 CODESYS Control V3 - Insecure default permissions MEDIUM 5.5 csaf_codesysgmbh 2025-08-04
advisory2025-04_vde-2025-022 CODESYS Control V3 - OPC UA Server Authentication bypass HIGH 7.5 csaf_codesysgmbh 2025-06-05
advisory2025-03_vde-2025-015 CODESYS Control V3 removable media path traversal MEDIUM 6.6 csaf_codesysgmbh 2025-06-05
advisory2025-02_vde-2025-013 CODESYS (Edge) Gateway for Windows insecure default MEDIUM 5.3 csaf_codesysgmbh 2025-06-05
advisory2025-01_vde-2025-001 CODESYS Key physical side-channel vulnerability MEDIUM 4.9 csaf_codesysgmbh 2025-06-05
vde-2024-024 CODESYS: Development System V2.3 affected by two vulnerabilities through corrupted project files HIGH 7.8 csaf_codesysgmbh 2025-05-14
vde-2024-027 CODESYS: Vulnerability in multiple products through exposure of resource to wrong sphere HIGH 7.8 csaf_codesysgmbh 2025-05-14
vde-2024-026 CODESYS: Vulnerability can cause a DoS on CODESYS OPC UA products HIGH 7.5 csaf_codesysgmbh 2025-05-14
advisory2025-05_vde-2025-027 CODESYS Visualization user management bypass in WebVisu MEDIUM 5.3 csaf_codesysgmbh 2025-04-23
advisory2024-05_vde-2024-057 CODESYS: CODESYS web server vulnerable to DoS HIGH 7.5 csaf_codesysgmbh 2025-04-03
vde-2024-046 OSCAT: Out-of-bounds read in OSCAT Basic library MEDIUM 5.1 csaf_codesysgmbh 2024-09-10
vde-2023-066 CODESYS: OS Command Injection Vulnerability in multiple CODESYS Control products HIGH 8.8 csaf_codesysgmbh 2023-12-05
vde-2023-035 CODESYS: Multiple products affected by WIBU Codemeter vulnerability CRITICAL 9.8 csaf_codesysgmbh 2023-12-05
vde-2023-025 CODESYS: Control runtime system memory and integrity check vulnerabilities HIGH 8.8 csaf_codesysgmbh 2023-08-03
vde-2023-023 CODESYS: Missing Brute-Force protection in CODESYS Development System LOW 3.3 csaf_codesysgmbh 2023-08-03