Automation runtime
This hub aggregates every CVE we track for Automation runtime, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
15
CVEs tracked
3
Critical
5
High
0
In CISA KEV
Severity distribution
MEDIUM7HIGH5CRITICAL3
Monthly trend
0
0
0
0
1
0
0
0
0
0
0
0
0
4
0
0
1
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Automation runtime.
- CVE-2025-11044Vulnerability on Automation Runtime my cause DoS Conditions6.8
- CVE-2025-11498CSV Formula Injection Vulnerability6.1
- CVE-2025-3449Weak Session Token used in Automation Runtime SDM4.2
- CVE-2025-3448XSS on SDM6.1
- CVE-2025-3450Automation Runtime SDM requests may impact system10.0
- CVE-2024-8603A “Use of a Broken or Risky Cryptographic Algorithm” vulnerability in the SSL/TLS component used in B&R Automation Runtime versions before 6.1 and B&R mapp View versions before 6.1 may be abuse...7.5
- CVE-2024-5800Diffie-Hellman groups with insufficient strength used in SSL/TLS stack of B&R Automation Runtime7.5
- CVE-2024-2637Insecure Loading of Code in B&R Products7.2
- CVE-2023-6028SDM Web interface vulnerable to XSS6.1
- CVE-2024-0323FTP uses unsecure encryption mechanisms9.8
- CVE-2023-3242Improper initialization implementation in Portmapper used in B&R Industrial Automation Automation Runtime <G4.93 allows unauthenticated network-based attackers to cause permanent denial-of-service ...8.6
- CVE-2022-4286Reflected Cross-Site Scripting Vulnerabilities in Automation Runtime6.1
- CVE-2021-22275Denial of service vulnerability on Automation Runtime webserver8.6
- CVE-2020-11637Automation Runtime TFTP Service DoS Vulnerability5.8
- CVE-2019-19108B&R Automation Runtime SNMP Authentication and Authorization Weakness9.4
Product normalization is registry-driven with AI assist and human review. How it works