Zurück zur CVE-Übersicht
CVE-2026-63035
HIGH(8.1)CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Risk Signal Score20/100 — NIEDRIG
- CVSS 8.1 — Hoch
Erwähnungen (letzte 60 Tage)
Artikel
EPSS-Score
1%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
8.1
Technische Schwere
Beschreibung
A heap use-after-free vulnerability in the TransferSubscriptions service in open62541 may allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code.
Referenzen
- https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-21...
- https://github.com/open62541/open62541/pull/8235/commits/b666d35769ce63998442e4d...
- https://github.com/open62541/open62541/pull/8236/commits/06b99fef667c8ec5bdf0605...
- https://github.com/open62541/open62541/pull/8237/commits/1b71d9c5d9c4d02d4729b89...
- https://github.com/open62541/open62541/pull/8238/commits/afab4107bfd161da9ce8bb3...
- https://www.cisa.gov/news-events/ics-advisories/icsa-26-211-08
- https://www.o6-automation.com/contact