Denial of Service Vulnerability in CODESYS Gateway Client by CODESYS GmbH
CVE-2026-76992
8.7HIGH
What is CVE-2026-76992?
The CODESYS Gateway Client has a vulnerability that allows an attacker to exploit improper memory allocation based on a size field in the gateway response without an upper limit. This flaw can be potentially exploited by an unauthenticated remote attacker to manipulate gateway responses, leading to excessive memory consumption. As a result, this can cause a denial-of-service condition, severely affecting the availability of services dependent on the CODESYS Gateway Client.
Affected Version(s)
Development System 3 3.0.0.0 < 3.5.22.40
Edge Gateway for Linux 3.15.0.0 < 4.23.0.0
Edge Gateway for Windows 3.0.0.0 < 3.5.22.40
