netVigilance Vulnerability intelligence since 2004

OpenPLC

2 OpenPLC vulnerabilities with confirmed exploitation in the wild, as published by CISA; 2 past the federal remediation deadline. This is a static slice of the catalog — open the full catalog for search and filters.

Known exploited vulnerabilities for OpenPLC
Vulnerability Status
overdue 260d2025-12-24 CVE-2021-26828 OpenPLC / ScadaBR OpenPLC ScadaBR Unrestricted Upload of File with Dangerous Type Vulnerability 2025-12-03 8.8 past due
overdue 265d2025-12-19 CVE-2021-26829 OpenPLC / ScadaBR OpenPLC ScadaBR Cross-site Scripting Vulnerability 2025-11-28 5.4 past due