Codesys Plchandler
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Codesys Plchandler.
By the Year
In 2026 there have been 0 vulnerabilities in Codesys Plchandler. Last year, in 2025 Plchandler had 1 security vulnerability published. Right now, Plchandler is on track to have less security vulnerabilities in 2026 than it did last year.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 0 | 0.00 |
| 2025 | 1 | 5.90 |
| 2024 | 0 | 0.00 |
| 2023 | 0 | 0.00 |
| 2022 | 1 | 7.50 |
| 2021 | 1 | 7.30 |
| 2020 | 0 | 0.00 |
| 2019 | 1 | 0.00 |
It may take a day or so for new Plchandler vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Codesys Plchandler Security Vulnerabilities
Remote OOB Read in CODESYS Control via Socket Race
CVE-2025-41739
5.9 - Medium
- December 01, 2025
An unauthenticated remote attacker, who beats a race condition, can exploit a flaw in the communication servers of the CODESYS Control runtime system on Linux and QNX to trigger an out-of-bounds read via crafted socket communication, potentially causing a denial of service.
Out-of-bounds Read
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected.
CVE-2022-31805
7.5 - High
- June 24, 2022
In the CODESYS Development System multiple components in multiple versions transmit the passwords for the communication between clients and servers unprotected.
Unprotected Transport of Credentials
CODESYS Control Runtime system before 3.5.17.0 has improper input validation
CVE-2021-29242
7.3 - High
- May 03, 2021
CODESYS Control Runtime system before 3.5.17.0 has improper input validation. Attackers can send crafted communication packets to change the router's addressing scheme and may re-route, add, remove or change low level communication packages.
Improper Input Validation
Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0.
CVE-2018-20026
- February 19, 2019
Improper Communication Address Filtering exists in CODESYS V3 products versions prior V3.5.14.0.
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Codesys Plchandler or by Codesys? Click the Watch button to subscribe.