Skip to content
IACS RadarIndustrial Cyber Exposure & Intelligence

CISA + vendors

ICS Advisories

Advisories specifically aimed at industrial control systems — from CISA ICS-CERT and directly from vendors (Siemens ProductCERT, ABB PSIRT) — including revision history (initial publication, Update A, Update B) and linked CVEs.

8

Found

Advisory data: live connection— last retrieved: 24 September 2026 at 06:19.

Filters

1 active
Reset filters

8 advisories found

ICSA-26-202-09

Rockwell Automation 1734 POINT I/O (Update A)

Rockwell Automation1734 POINT I/O

CISAlow

Published

21 July 2026

Last update

1 September 2026

Linked CVEs

Affected sectors

Risk evaluation

Successful exploitation of this vulnerability could allow for an attacker to cause a denial-of-service condition on the product.

Mitigation summary

Rockwell Automation recommends users are to migrate to 5034-OB8.

Revision history (2)
  1. Initial publication21 July 2026

    Initial Republication of Rockwell Automation Security Advisory

  2. Update A1 September 2026

    Update A - Updated impact statement and CVSS scores.

Official source: CISA

ICSA-26-211-05

Rockwell Automation CompactLogix 5380 ControlLogix 5580 / 1756-EN4TR Communications Module

Rockwell AutomationControlLogix 5580

CISAmiddel

Published

30 July 2026

Last update

30 July 2026

Linked CVEs

Affected sectors

Risk evaluation

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition.

Mitigation summary

Rockwell Automation recommend users update to the following versions: ControlLogix 5580: Update to V38.011

Revision history (1)
  1. Initial publication30 July 2026

    Initial Publication

Official source: CISA

ICSA-26-204-05

Rockwell Automation ThinManager

Rockwell AutomationThinManager

CISAhigh

Published

14 July 2026

Last update

23 July 2026

Linked CVEs

Affected sectors

Risk evaluation

Successful exploitation of this vulnerability could allow an authenticated attacker to write arbitrary files to restricted system directories outside of the application's intended directory.

Mitigation summary

Users using the affected software, should upgrade to one of the corrected versions as follows:

Revision history (2)
  1. Initial publication14 July 2026

    Initial Publication by Rockwell Automation

  2. Update A23 July 2026

    Initial Republication of Rockwell Automation advisory

Official source: CISA

ICSA-26-202-10

Rockwell Automation Studio 5000 Logix Designer

Rockwell AutomationStudio 5000 Logix Designer

CISAhigh

Published

21 July 2026

Last update

21 July 2026

Affected sectors

Risk evaluation

Successful exploitation of these vulnerabilities could allow for a local attacker to execute arbitrary files, alter configurations, or execute arbitrary code.

Mitigation summary

Rockwell Automation recommends users to upgrade to the following: Studio 5000 Logix Designer: V37.00, 36.01, 35.02, 34.04, 33.04, 32.05 (CVE-2026-9108)

Revision history (1)
  1. Initial publication21 July 2026

    Initial Republication of Rockwell Automation Security Advisory

Official source: CISA

ICSA-26-202-08

Rockwell Automation 1718-AENTR/1719-AENTR

Rockwell Automation1718/ 1719 Ex I/O

CISAhigh

Published

21 July 2026

Last update

21 July 2026

Linked CVEs

Affected sectors

Risk evaluation

Successful exploitation of this vulnerability could allow for an attacker to cause a denial-of-service condition on the product.

Mitigation summary

Rockwell Automation recommends users to upgrade to 1718/ 1719 Ex I/O version 3.012 or later.

Revision history (1)
  1. Initial publication21 July 2026

    Initial Republication of Rockwell Automation Security Advisory

Official source: CISA

ICSA-26-202-07

Rockwell Automation FactoryTalk Services Platform

Rockwell AutomationFactoryTalk Directory (FTSP)

CISAhigh

Published

21 July 2026

Last update

21 July 2026

Linked CVEs

Affected sectors

Risk evaluation

Successful exploitation of this vulnerability could allow an attacker to impersonate an authorized user on the FTSP server, resulting in unauthorized access to system configurations.

Mitigation summary

Users using FactoryTalk Services Platform v6.60 should apply either the individual patch (RAID 1158263) or the February 2026 Patch Roll-up, or later update.

Revision history (1)
  1. Initial publication21 July 2026

    Initial Republication of Rockwell Automation SD1786

Official source: CISA

ICSA-26-197-09

Rockwell Automation FactoryTalk DataMosaix

Rockwell AutomationDataMosaix Private Cloud

CISAmiddel

Published

16 July 2026

Last update

16 July 2026

Linked CVEs

Affected sectors

Risk evaluation

Successful exploitation of this vulnerability could allow an authenticated attacker to inject malicious scripts on the server.

Mitigation summary

Rockwell Automation recommends users to upgrade to the following: DataMosaix Private Cloud versions 8.03 or later.

Revision history (1)
  1. Initial publication16 July 2026

    Initial Republication of Rockwell Automation Security Advisory SD1787

Official source: CISA

ICSA-26-197-08

Rockwell Automation Flex 5000 Adapter

Rockwell AutomationFlex 5000 Adapter

CISAhigh

Published

16 July 2026

Last update

16 July 2026

Linked CVEs

Affected sectors

Risk evaluation

Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition on the affected product.

Mitigation summary

Rockwell Automation recommends users to upgrade to the following: Flex 5000 Adapter version 6.012.

Revision history (1)
  1. Initial publication16 July 2026

    Initial Republication of Rockwell Automation Security Advisory SD1789

Official source: CISA