Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Codesys

First CVE: May 19, 2017Active for: 9 yearsTotal CVEs: 132
39.7
VTI Score
Medium

Codesys develops industrial automation and control runtime systems widely deployed across embedded IoT and programmable logic controllers, a segment that spans multiple form factors including gateway appliances and specialized runtime toolkits. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, reflecting the memory-safety and input-handling demands of real-time control software and the consequence of flaws in safety-critical systems. The exposure concentrates across products such as the Control platform for IoT2000 and PFC series controllers, as well as the runtime system toolkit, and recurs through weakness classes including out-of-bounds writes, improper input validation, untrusted deserialization, and NULL-pointer dereferences that are characteristic of C-based automation runtime stacks. Defenders operating industrial networks should treat this vendor's advisories as high-priority, particularly for internet-exposed or networked gateways; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
132
Total CVEs
More Total CVEs than 99% of tracked vendors
0.2
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
7.7
Avg CVSS Score
Higher Avg CVSS Score than 73% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Codesys over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 19, 2017
9 years ago
Most Recent CVE
May 26, 2026
59 days ago

Products(76 total)

Top CVEs

Signals from CVEs in this vendor scope (132 CVEs).

132 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-31806CRITICAL
In CODESYS V2 PLCWinNT and Runtime Toolkit 32 in versions prior to V2.4.7.57 password protection is not enabled by default and there is no information or prompt to enable password
Jun 24, 20229.832NONO
CVE-2021-30188CRITICAL
CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow.
May 25, 20219.832NONO
CVE-2017-6027CRITICAL
An Arbitrary File Upload issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CODESYS Web Server, part of the CODESYS WebVisu web
May 19, 20179.832NONO
CVE-2020-10245CRITICAL
CODESYS V3 web server before 3.5.15.40, as used in CODESYS Control runtime systems, has a buffer overflow.
Mar 26, 20209.831NONO
CVE-2018-10612CRITICAL
In 3S-Smart Software Solutions GmbH CODESYS Control V3 products prior to version 3.5.14.0, user access management and communication encryption is not enabled by default, which coul
Jan 29, 20199.831NONO
CVE-2017-6025CRITICAL
A Stack Buffer Overflow issue was discovered in 3S-Smart Software Solutions GmbH CODESYS Web Server. The following versions of CODESYS Web Server, part of the CODESYS WebVisu web b
May 19, 20179.831NONO
CVE-2026-44469HIGH
The affected product extracts installation files to a temporary directory with incorrect default permissions during administrative installation. A low-privileged local attacker can
May 26, 20267.830NONO
CVE-2026-44468HIGH
The affected product creates a directory with insecure default permissions during administrative installation. This allows a low-privileged local attacker to modify a temporary fil
May 26, 20267.830NONO
CVE-2021-34586HIGH
In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests may cause a Null pointer dereference in the CODESYS web server and may result in a denial-of-service con
Oct 26, 20217.530NONO
CVE-2021-33485CRITICAL
CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow.
Aug 3, 20219.830NONO
View all 132 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products132 CVEs
27%
58%
14%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local22 (16.7%)
Network109 (82.6%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (0.8%)
Attack Complexity
Low131 (99.2%)
High1 (0.8%)
Unknown0 (0.0%)
User Interaction
None118 (89.4%)
Unknown0 (0.0%)
Required14 (10.6%)
Privileges Required
Low66 (50.0%)
High0 (0.0%)
None66 (50.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (132 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Codesys.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Codesys — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Codesys's Products

View all 5 CNAs →

Top CWEs