<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 09:00:01 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-171452</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-171452</link>
      <description>EUVD-2026-171452</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-171452</guid>
    </item>
    <item>
      <title>fkie_cve-2022-31804</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-31804</link>
      <description>&lt;p&gt;The CODESYS Gateway Server V2 does not verifiy that the size of a request is within expected limits. An unauthenticated attacker may allocate an arbitrary amount of memory, which may lead to a crash of the Gateway due to an out-of-memory condition.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The CODESYS Gateway Server V2 does not verifiy that the size of a request is within expected limits. An unauthenticated attacker may allocate an arbitrary amount of memory, which may lead to a crash of the Gateway due to an out-of-memory condition.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-31804</guid>
    </item>
    <item>
      <title>FSA-202406 — Several Codesys Gateway v2 vulnerabilities in Codesys provided by Festo</title>
      <link>https://cve.radiocsirt.org/vuln/fsa-202406</link>
      <description>&lt;p&gt;An unauthenticated attacker would be able to send crafted requests to cause the CODESYS Gateway Server V2 to allocate excessive memory or consume all available TCP client connections. Besides, passwords are insufficiently checked during login.&lt;/p&gt;
&lt;p&gt;All versions of the following CODESYS V2 product prior version V2.3.9.38 are affected:&lt;/p&gt;
&lt;p&gt;• CODESYS Gateway Server&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An unauthenticated attacker would be able to send crafted requests to cause the CODESYS Gateway Server V2 to allocate excessive memory or consume all available TCP client connections. Besides, passwords are insufficiently checked during login.&lt;/p&gt;
&lt;p&gt;All versions of the following CODESYS V2 product prior version V2.3.9.38 are affected:&lt;/p&gt;
&lt;p&gt;• CODESYS Gateway Server&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fsa-202406</guid>
    </item>
    <item>
      <title>GHSA-qhgm-4r4g-j663</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qhgm-4r4g-j663</link>
      <description>&lt;p&gt;The CODESYS Gateway Server V2 does not verifiy that the size of a request is within expected limits. An unauthenticated attacker may allocate an arbitrary amount of memory, which may lead to a crash of the Gateway due to an out-of-memory condition.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The CODESYS Gateway Server V2 does not verifiy that the size of a request is within expected limits. An unauthenticated attacker may allocate an arbitrary amount of memory, which may lead to a crash of the Gateway due to an out-of-memory condition.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qhgm-4r4g-j663</guid>
    </item>
    <item>
      <title>gsd-2022-31804</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-31804</link>
      <description>gsd-2022-31804</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-31804</guid>
    </item>
    <item>
      <title>ICSA-25-182-03 — FESTO CODESYS</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-25-182-03</link>
      <description>&lt;p&gt;An unauthenticated attacker would be able to send crafted requests to cause the CODESYS Gateway Server V2 to allocate excessive memory or consume all available TCP client connections. Besides, passwords are insufficiently checked during login.&lt;/p&gt;
&lt;p&gt;All versions of the following CODESYS V2 product prior version V2.3.9.38 are affected:&lt;/p&gt;
&lt;p&gt;• CODESYS Gateway Server&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An unauthenticated attacker would be able to send crafted requests to cause the CODESYS Gateway Server V2 to allocate excessive memory or consume all available TCP client connections. Besides, passwords are insufficiently checked during login.&lt;/p&gt;
&lt;p&gt;All versions of the following CODESYS V2 product prior version V2.3.9.38 are affected:&lt;/p&gt;
&lt;p&gt;• CODESYS Gateway Server&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-25-182-03</guid>
    </item>
    <item>
      <title>VDE-2022-040 — WAGO: Multiple Vulnerabilities in Controller with WAGO I/O-Pro / CODESYS 2.3 Runtime</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2022-040</link>
      <description>&lt;p&gt;UPDATE A: Solution has updated release datesUPDATE B: Solution has updated release datesThis Advisory is published with reference to:&lt;/p&gt;
&lt;p&gt;CODESYS Advisory 2022-11 (Security update for CODESYS Control V2)
CODESYS Advisory 2022-12 (Security update for CODESYS V2 password transport)
CODESYS Advisory 2022-13 (Security update for CODESYS Gateway V2)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;UPDATE A: Solution has updated release datesUPDATE B: Solution has updated release datesThis Advisory is published with reference to:&lt;/p&gt;
&lt;p&gt;CODESYS Advisory 2022-11 (Security update for CODESYS Control V2)
CODESYS Advisory 2022-12 (Security update for CODESYS V2 password transport)
CODESYS Advisory 2022-13 (Security update for CODESYS Gateway V2)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2022-040</guid>
    </item>
  </channel>
</rss>
