Rockwell Automation Patches Dozens of Vulnerabilities Across Industrial Automation Products
Industrial automation giant Rockwell Automation has issued patches or workarounds for over a dozen vulnerabilities discovered across its products. The company’s advisory highlights critical and high-severity issues that could compromise sensitive operations, making it essential for customers to take immediate action.
The most concerning vulnerability, labeled as CVE-2026-9637, affects ControlLogix and CompactLogix controllers, which are widely used in industrial settings. Initially flagged as exploited by Rockwell, this label appears to be an error, with the US Cybersecurity and Infrastructure Security Agency (CISA) also stating that it is not aware of any exploitation. However, a high-severity denial-of-service flaw remains a significant concern, potentially allowing attackers to disrupt operations by crashing the RSLinx Classic service.
Several other products have been affected, including FactoryTalk Historian Machine Edition, which has a critical remote code execution issue; and FactoryTalk Activation Manager, where an authenticated attacker can access files, processes, and system resources with elevated privileges. Multiple cross-site scripting (XSS) vulnerabilities have also been patched in ArmorStart Distributed Motor Controllers, along with a denial-of-service issue impacting the web server.
The ControlFLASH firmware management utility is vulnerable to arbitrary code execution, allowing attackers to run malicious code on target machines at the logged-in user’s permission level. Similarly, the Redundancy Module Configuration Tool has a high-severity privilege escalation flaw that could enable unauthorized access to system resources.
Rockwell Automation’s patching efforts cover a range of products and services, demonstrating the company’s commitment to maintaining the security and integrity of its industrial automation solutions. Customers are advised to prioritize updating their systems with the latest patches as soon as possible to mitigate potential risks.
In light of this development, it is essential for organizations relying on Rockwell Automation products to take proactive measures in securing their operations. This includes regularly reviewing system configurations, implementing robust security protocols, and conducting thorough vulnerability assessments to identify and address any potential weaknesses. By staying informed and taking timely action, businesses can minimize the risk of compromise and ensure continued smooth operation.
Source: SecurityWeek — 2026-09-02