Bulletins

CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an unauthenticated network-adjacent attacker to crash critical IEC 61850 services or execute arbitrary code, disrupting or compromising protection, visibility, and control functions.

The following versions of MZ Automation libIEC61850 are affected:

  • libIEC61850 >=v1.0.0|<=v1.6.1 
CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker with access to the IT network to manipulate industrial control devices without requiring physical access, specialized insider knowledge, or advanced tooling.

The following versions of Panduit IntraVUE are affected:

  • IntraVUE <=3.2.1a14 
CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of this vulnerability could cause the parsing process to crash, which will cause a denial of service.

The following versions of MZ Automation lib60870 are affected:

  • lib60870 <=2.4.0
CVSS Vendor Equipment
CISA (ALL)
07/23/2026

View CSAF

Summary

Successful exploitation of these vulnerabilities could allow an attacker with network access to achieve remote code execution.

The following versions of Johnson Controls C-CURE 9000 and Victor application server are affected:

  • C-CURE 9000 and victor <=v2.90_v3.0 
  • victor Web <=v7.1 
CISA (ALL)
07/21/2026

View CSAF

Summary

CADRA is affected by multiple zlib and Foxit vulnerabilities. Siemens has released a new version for CADRA and recommends to update to the latest version. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.

CISA (ALL)
07/21/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow for an attacker to cause a denial-of-service condition on the product.

The following versions of Rockwell Automation 1734 POINT I/O are affected:

  • 1734 POINT I/O 3.023 
CVSS Vendor
CISA (ALL)
07/21/2026

View CSAF

Summary

Successful exploitation of this vulnerability could allow an attacker to impersonate an authorized user on the FTSP server, resulting in unauthorized access to system configurations.

The following versions of Rockwell Automation FactoryTalk Services Platform are affected:

  • FactoryTalk Directory (FTSP) 6.60