CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

codesys

control_for_plcnext

8 known vulnerabilities · sorted by CVSS score

CVE-2019-18858
CRITICAL9.8

CODESYS 3 web server before 3.5.15.20, as distributed with CODESYS Control runtime systems, has a Buffer Overflow.

codesys / control_for_beaglebone+13
Network
Published Nov 20, 2019
CVE-2020-10245
CRITICAL9.8

CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow.

codesys / control_for_beaglebone+14
Network
Published Mar 26, 2020
CVE-2020-12069
HIGH7.8

In CODESYS V3 products in all versions prior V3.5.16.0 containing the CmpUserMgr, the CODESYS Control runtime system stores the online communication passwords using a weak hashing algorithm. This can be used by a local attacker with low privileges to gain full control of the device.

pilz / pmc+66
Local
Published Dec 26, 2022
CVE-2022-30791
HIGH7.5

In CmpBlkDrvTcp of CODESYS V3 in multiple versions an uncontrolled ressource consumption allows an unauthorized attacker to block new TCP connections. Existing connections are not affected.

codesys / control_for_beaglebone+19
Network
Published Jul 11, 2022
CVE-2022-30792
HIGH7.5

In CmpChannelServer of CODESYS V3 in multiple versions an uncontrolled ressource consumption allows an unauthorized attacker to block new communication channel connections. Existing connections are not affected.

codesys / control_for_beaglebone+19
Network
Published Jul 11, 2022
CVE-2020-15806
HIGH7.5

CODESYS Control runtime system before 3.5.16.10 allows Uncontrolled Memory Allocation.

codesys / control_for_beaglebone+16
Network
Published Jul 22, 2020
CVE-2020-12068
MEDIUM6.5

An issue was discovered in CODESYS Development System before 3.5.16.0. CODESYS WebVisu and CODESYS Remote TargetVisu are susceptible to privilege escalation.

codesys / control_for_beaglebone+11
Network
Published May 14, 2020
CVE-2020-7052
MEDIUM6.5

CODESYS Control V3, Gateway V3, and HMI V3 before 3.5.15.30 allow uncontrolled memory allocation which can result in a remote denial of service condition.

codesys / control_for_beaglebone+15
Network
Published Jan 24, 2020