← Back to home
ICSA-21-110-07  ·  Published 2025-05-06  ·  View on CISA ICS-CERT ↗

Siemens Mendix

CVSS 8.1 HIGH

CVEs (1)

Remediations

  • Update your Mendix Project to V7.23.19 or later version and redeploy your application
  • Update your Mendix Project to V8.17.0 or later version and redeploy your application
  • Update your Mendix Project to V8.6.9 or later and preferably the latest V8.18 version and redeploy your application
  • Update your Mendix Project to V8.12.5 or later and preferably the latest V8.18 version and redeploy your application
  • Update your Mendix Project to V9.0.5 or later version and redeploy your application
  • Remove the privilege to manage user roles for non-administrative roles to mitigate this vulnerability for non-administrative users

Affected Vendors

Siemens

Affected Products (5)

Siemens · Mendix Applications using Mendix 7 <V7.23.19
Siemens · Mendix Applications using Mendix 8 <V8.17.0
Siemens · Mendix Applications using Mendix 8 (V8.6) <V8.6.9
Siemens · Mendix Applications using Mendix 8 (V8.12) <V8.12.5
Siemens · Mendix Applications using Mendix 9 <V9.0.5

Affected Sectors

Multiple

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more