← Back to home
ICSA-26-211-08  ·  Published 2026-07-30  ·  View on CISA ICS-CERT ↗

o6 Automation open62541

CVSS 8.8 HIGH

Risk Summary

Successful exploitation of these vulnerabilities could allow an attacker to disclose sensitive information, cause a denial of service, or potentially execute arbitrary code.

Remediations

  • o6 Automation has prepared mitigations and fixes to address these issues and recommends that users update to the newest version. The new version can be obtained by contacting o6 Automation https://www.o6-automation.com/contact or by downloading from the following locations:
  • https://github.com/open62541/open62541/pull/8235/commits/b666d35769ce63998442e4d0810a3fb10b50179f
  • https://github.com/open62541/open62541/pull/8236/commits/06b99fef667c8ec5bdf0605b4f00c84fcc1d3a60
  • https://github.com/open62541/open62541/pull/8237/commits/1b71d9c5d9c4d02d4729b8903a52e9f530bf804e
  • https://github.com/open62541/open62541/pull/8238/commits/afab4107bfd161da9ce8bb30ed77f3968c9c97df
  • For more information, see open62541 Security Advisories SA-2026-0012, SA-2026-0014, and SA-2026-0015 or contact o6 Automation: https://www.o6-automation.com/contact

Affected Vendors

o6 Automation GmbH

Affected Products (4)

o6 Automation GmbH · open62541 on Windows and Linux >=from_1.3.0|<=1.3.17
o6 Automation GmbH · open62541 on Windows and Linux >=from_1.4.0|<=1.4.16
o6 Automation GmbH · open62541 on Windows and Linux >=from_1.5.0|<=1.5.4
o6 Automation GmbH · open62541 on Windows and Linux master

Affected Sectors

Critical Manufacturing, Energy, Transportation Systems

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more