Description
OpenPLC_V3 is vulnerable to an Initialization of a Resource with an Insecure Default vulnerability which could allow an attacker to gain access to the system by bypassing authentication via an API.
No analysis available yet.
Remediation
Vendor Workaround
OpenPLC_v3 is now considered to be end of life. Users are recommended to upgrade to OpenPLC Runtime v4 ( https://github.com/autonomy-logic/openplc-runtime ).
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Thu, 09 Apr 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenPLC_V3 is vulnerable to an Initialization of a Resource with an Insecure Default vulnerability which could allow an attacker to gain access to the system by bypassing authentication via an API. | |
| Title | Initialization of a resource with an insecure default in OpenPLC_V3 | |
| Weaknesses | CWE-1188 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-04-09T18:54:58.694Z
Reserved: 2026-04-06T15:01:14.335Z
Link: CVE-2026-28205
No data.
Status : Received
Published: 2026-04-09T19:16:23.370
Modified: 2026-04-09T19:16:23.370
Link: CVE-2026-28205
No data.
OpenCVE Enrichment
No data.
Weaknesses