Codesys Runtime Toolkit vulnerabilities
8 known vulnerabilities affecting codesys/codesys_runtime_toolkit.
Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH6MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2025-41660HIGHCVSS 8.8≥ 0.0.0, < 3.5.22.02026-03-24
CVE-2025-41660 [HIGH] CWE-669 CVE-2025-41660: A low-privileged remote attacker may be able to replace the boot application of the CODESYS Control
A low-privileged remote attacker may be able to replace the boot application of the CODESYS Control runtime system, enabling unauthorized code execution.
cvelistv5nvd
CVE-2026-3509HIGHCVSS 7.5≥ 3.5.17.0, < 3.5.22.02026-03-24
CVE-2026-3509 [HIGH] CWE-134 CVE-2026-3509: An unauthenticated remote attacker may be able to control the format string of messages processed by
An unauthenticated remote attacker may be able to control the format string of messages processed by the Audit Log of the CODESYS Control runtime system, potentially resulting in a denial‑of‑service (DoS) condition.
cvelistv5nvd
CVE-2025-41738HIGHCVSS 7.5≥ 3.5.18.0, < 3.5.21.402025-12-01
CVE-2025-41738 [HIGH] CWE-843 CVE-2025-41738: An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime
An unauthenticated remote attacker may cause the visualisation server of the CODESYS Control runtime system to access a resource with a pointer of wrong type, potentially leading to a denial-of-service (DoS) condition.
cvelistv5nvd
CVE-2025-41739MEDIUMCVSS 5.9≥ 3.5.21.0, < 3.5.21.402025-12-01
CVE-2025-41739 [MEDIUM] CWE-125 CVE-2025-41739: An unauthenticated remote attacker, who beats a race condition, can exploit a flaw in the communicat
An unauthenticated remote attacker, who beats a race condition, can exploit a flaw in the communication servers of the CODESYS Control runtime system on Linux and QNX to trigger an out-of-bounds read via crafted socket communication, potentially causing a denial of service.
cvelistv5nvd
CVE-2025-1468HIGHCVSS 7.5fixed in 3.5.21.02025-03-18
CVE-2025-1468 [HIGH] CWE-203 CVE-2025-1468: An unauthenticated remote attacker can gain access to sensitive information including authentication
An unauthenticated remote attacker can gain access to sensitive information including authentication information when using CODESYS OPC UA Server with the non-default Basic128Rsa15 security policy.
cvelistv5nvd
CVE-2025-0694MEDIUMCVSS 6.6fixed in 3.5.21.02025-03-18
CVE-2025-0694 [MEDIUM] CWE-22 CVE-2025-0694: Insufficient path validation in CODESYS Control allows low privileged attackers with physical access
Insufficient path validation in CODESYS Control allows low privileged attackers with physical access to gain full filesystem access.
cvelistv5nvd
CVE-2024-8175HIGHCVSS 7.5fixed in 3.5.20.302024-09-25
CVE-2024-8175 [HIGH] CWE-754 CVE-2024-8175: An unauthenticated remote attacker can causes the CODESYS web server to access invalid memory which
An unauthenticated remote attacker can causes the CODESYS web server to access invalid memory which results in a DoS.
cvelistv5nvd
CVE-2024-5000HIGHCVSS 7.5fixed in 3.5.20.102024-06-04
CVE-2024-5000 [HIGH] CWE-131 CVE-2024-5000: An unauthenticated remote attacker can use a malicious OPC UA client to send a crafted request to af
An unauthenticated remote attacker can use a malicious OPC UA client to send a crafted request to affected CODESYS products which can cause a DoS due to incorrect calculation of buffer size.
cvelistv5nvd