Codesys develops industrial automation and control runtime systems widely deployed across embedded IoT and programmable logic controllers, a segment that spans multiple form factors including gateway appliances and specialized runtime toolkits. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, reflecting the memory-safety and input-handling demands of real-time control software and the consequence of flaws in safety-critical systems. The exposure concentrates across products such as the Control platform for IoT2000 and PFC series controllers, as well as the runtime system toolkit, and recurs through weakness classes including out-of-bounds writes, improper input validation, untrusted deserialization, and NULL-pointer dereferences that are characteristic of C-based automation runtime stacks. Defenders operating industrial networks should treat this vendor's advisories as high-priority, particularly for internet-exposed or networked gateways; current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Codesys over time
Signals from CVEs in this vendor scope (132 CVEs).
132 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-31806CRITICAL In CODESYS V2 PLCWinNT and Runtime Toolkit 32 in versions prior to V2.4.7.57 password protection is not enabled by default and there is no information or prompt to enable password | Jun 24, 2022 | 9.8 | 32 | NO | NO |
CVE-2021-30188CRITICAL CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow. | May 25, 2021 | 9.8 | 32 | NO | NO |
CVE-2017-6027CRITICAL An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CODESYS Web Server, part of the CODESYS WebVisu web | May 19, 2017 | 9.8 | 32 | NO | NO |
CVE-2020-10245CRITICAL CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow. | Mar 26, 2020 | 9.8 | 31 | NO | NO |
CVE-2018-10612CRITICAL In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encryption is not enabled by default, which coul | Jan 29, 2019 | 9.8 | 31 | NO | NO |
CVE-2017-6025CRITICAL A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CODESYS Web Server, part of the CODESYS WebVisu web b | May 19, 2017 | 9.8 | 31 | NO | NO |
CVE-2026-44469HIGH The affected product extracts installation files to a temporary directory with incorrect default permissions during administrative installation. A low-privileged local attacker can | May 26, 2026 | 7.8 | 30 | NO | NO |
CVE-2026-44468HIGH The affected product creates a directory with insecure default permissions during administrative installation. This allows a low-privileged local attacker to modify a temporary fil | May 26, 2026 | 7.8 | 30 | NO | NO |
CVE-2021-34586HIGH In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests may cause a Null pointer dereference in the CODESYS web server and may result in a denial-of-service con | Oct 26, 2021 | 7.5 | 30 | NO | NO |
CVE-2021-33485CRITICAL CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow. | Aug 3, 2021 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (132 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Codesys.
Media articles that mention a CVE ID that affects a product developed by Codesys — matched by CVE ID, not by vendor name.