Successful exploitation of these vulnerabilities could allow for a local attacker to execute arbitrary files, alter configurations, or execute arbitrary code.
The following versions of Rockwell Automation Studio 5000 Logix Designer are affected:
Studio 5000 Logix Designer V36.00 (CVE-2026-9108)
Studio 5000 Logix Designer V35.00 (CVE-2026-9108, CVE-2026-9127, CVE-2026-9128)
Studio 5000 Logix Designer V35.01 (CVE-2026-9108)
Studio 5000 Logix Designer >=V34.00|=V33.00|=V32.00|=V34.00|=V33.00|
Read the full advisory on CISA →