Bulletins

CISA (ALL)
09/01/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition on the affected product.

The following versions of Rockwell Automation RSLinx Classic are affected:

  • RSLinx Classic <=4.50 (CVE-2026-9621, CVE-2026-9622, CVE-2026-9624, CVE-2026-9625)
…
CVSS
CISA (ALL)
09/01/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow for an attacker to escalate and execute processes with administrator privileges.

The following versions of Rockwell Automation Redundancy Module Configuration Tool are affected:

  • Redundancy Module Configuration Tool 10.00.00 (CVE-2026-9633)
  • Redundancy Module Configuration Tool >=9.00.00|<=10.00.00 …
BOSCH PSIRT
08/31/2026

BOSCH-SA-223618: Multiple vulnerabilities including stack-based buffer overflows, heap-based buffer overflows, and out-of-bounds reads have been identified in several Bosch Sensortec software components: the BHI360 SensorAPI, BHI385 SensorAPI, BME690 SensorAPI, and the COINES SDK. Depending on the specific vulnerability, a locally/physically positioned attacker, or a compromised peripheral device (connected via I2C, …

CISA (ALL)
08/27/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to read or write arbitrary local files, cause the application to issue outbound network requests, or intercept the connection to impersonate the trusted peer, complete the TLS handshake, and read or modify the protected communications.

…

CISA (ALL)
08/27/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow a remote attacker to cause a denial-of-service (DoS) condition, a timeout error, or a communication delay by sending a specially crafted UDP packet to the product.

The following versions of Mitsubishi Electric Multiple FA Products (Update D) …

CISA (ALL)
08/27/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker to take control over the device.

The following versions of Xiiaozet LK100W are affected:

  • LK100W <2.1.240 (CVE-2026-78037, CVE-2026-78239, CVE-2026-76943)
…
CVSS Vendor Equipment Vulnerabilities
CISA (ALL)
08/27/2026

View CSAF

Summary

Successful exploitation of this vulnerability could reduce the computational cost required for an attacker to perform offline brute-force attacks against stored password hashes.

The following versions of Rockwell Automation OTTO Fleet Manager are affected:

  • OTTO Fleet Manager <=V2.36.2 (CVE-2026-75112)
…
CISA (ALL)
08/27/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow a remote attacker to cause an out-of-bounds read, resulting in a denial-of-service condition in the affected products.

The following versions of Mitsubishi Electric CNC Series (Update A) are affected:

  • Mitsubishi Electric M800VW (BND-2051W000) <=BB (CVE-2025-2399)
  • …