Answer in brief
CVE-2026-79625 records a High severity (CVSS 7.2) vulnerability in Improper Synchronization in Monitoring in CODESYS Control Runtime. The current sources do not mark it as known exploited. The current feed maps CODESYS/Control for BeagleBone SL (generic), CODESYS/Control for emPC-A/iMX6 SL (generic), CODESYS/Control for IOT2000 SL (generic), CODESYS/Control for Linux ARM SL (generic) and additional mapped packages. Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
CVSS is 7.2. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps CODESYS/Control for BeagleBone SL (generic), CODESYS/Control for emPC-A/iMX6 SL (generic), CODESYS/Control for IOT2000 SL (generic), CODESYS/Control for Linux ARM SL (generic) and additional mapped packages. Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| CODESYS/Control for BeagleBone SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for emPC-A/iMX6 SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for IOT2000 SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for Linux ARM SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for Linux SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for PFC100 SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for PFC200 SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for PLCnext SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for Raspberry Pi SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control for WAGO Touch Panels 600 SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
| CODESYS/Control RTE (for Beckhoff CX) SLgeneric | >=3.0.0.0 <3.5.22.40 | 3.5.22.40 |
| CODESYS/Control RTE (SL)generic | >=3.0.0.0 <3.5.22.40 | 3.5.22.40 |
| CODESYS/Control Win (SL)generic | >=3.0.0.0 <3.5.22.40 | 3.5.22.40 |
| CODESYS/Development System 3generic | >=3.0.0.0 <3.5.22.40 | 3.5.22.40 |
| CODESYS/HMI (SL)generic | >=3.0.0.0 <3.5.22.40 | 3.5.22.40 |
| CODESYS/Runtime Toolkitgeneric | >=3.0.0.0 <3.5.22.40 | 3.5.22.40 |
| CODESYS/Safety SIL2generic | >=3.0.0.0 <3.5.22.40 | 3.5.22.40 |
| CODESYS/Virtual Control SLgeneric | >=3.5.0.0 <4.23.0.0 | 4.23.0.0 |
Published upstream
Sep 30, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 30, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 30, 2026
Affected products do not properly synchronize access to their monitoring functionality. When multiple clients send concurrent requests, this may lead to incorrect reads or writes, or to corruption of internal memory structures. An authenticated remote attacker with monitoring access can exploit this issue to cause incorrect data processing or a denial-of-service condition.
Quoted source text, attributed separately from HOL analysis.