Exposure monitor
Vulnerabilities
Automotive Vulnerabilities. Hunted worldwide every 24 hours, across πΊπΈπ¨π³π―π΅π°π·πΉπΌπ©πͺπ«π·π¨ππ¦πΉπ³π±π§πͺπ΅π±π¨π¦π±πΊπͺπΊ. Stay ahead.
1962advisories found
csaf_cisahigh Β· 7.5
icsa-26-237-05
The Bendix EC80 Brake ECU, used in the transportation systems sector in the United States and Canada, has multiple vulnerabilities. An attacker could exploit a stack-based buffer overflow or out-of-bounds write to crash the ECU, remotely execute arbitrary code, or inject CAN bus traffic, potentially causing loss of ABS, steering assist, speedometer, and shifting functions. Additionally, hard-coded credentials could allow an attacker to disable automatic traction control, with no known public exploitation reported at this time.
csaf_susehigh Β· 7.5
rhsa-2026:59241
This advisory addresses a denial-of-service vulnerability in python-pyasn1, a generic ASN.1 library for Python, prior to version 0.6.4. An attacker can exploit a specially crafted BER, CER, or DER encoded REAL value with a large exponent to cause excessive CPU and memory consumption, hanging applications that decode and then print, log, or compare untrusted ASN.1 data. This could be relevant where python-pyasn1 is deployed in automotive systems for processing ASN.1 data, such as in telematics or diagnostic protocols, and the severity is not explicitly rated in the advisory. Confirm applicability through the product SBOM or dependency inventory.
csaf_susehigh Β· 7.5
rhsa-2026:59243
This advisory addresses a denial-of-service vulnerability in python-pyasn1, a Python library for ASN.1 data processing, where a specially crafted data value can cause excessive CPU and memory use, hanging applications that decode and then print, log, or compare untrusted data. The issue is fixed in version 0.6.4, and the severity is not explicitly stated in the advisory. This could be relevant where python-pyasn1 is deployed in automotive systems for processing ASN.1 data, such as in telematics or diagnostic protocols, but the advisory does not confirm automotive use; confirm applicability through the product SBOM or dependency inventory.
csaf_susehigh Β· 7.5
rhsa-2026:59242
This advisory addresses a denial-of-service vulnerability in the Python pyasn1 library, where specially crafted ASN.1 data can cause excessive CPU and memory consumption, potentially hanging applications that decode and process untrusted data. The issue is fixed in version 0.6.4, and the severity is not explicitly stated in the advisory. This could be relevant where pyasn1 is deployed in automotive systems for processing serialized data, but the advisory does not confirm automotive use; confirm applicability through the product SBOM or dependency inventory.
cvelistv5high Β· 7.5
cve-2026-76928
Wireshark versions 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 contain a null pointer dereference vulnerability in the X.509IF protocol dissector, which can cause the application to crash and result in a denial of service when processing specially crafted network traffic. This could be relevant where Wireshark is deployed in automotive systems for network analysis or diagnostics, but the advisory does not confirm automotive use. Confirm applicability through the product SBOM or dependency inventory.
cvelistv5high Β· 7.5
cve-2026-76880
The advisory describes an out-of-bounds write vulnerability in Wireshark's RRC protocol dissector, affecting versions 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18, which can cause a crash and lead to a denial of service. An attacker could exploit this by crafting malicious network traffic to crash the application. This could be relevant where Wireshark is deployed in automotive systems for network analysis or diagnostics, but the advisory does not confirm automotive use; confirm applicability through the product SBOM or dependency inventory.
cvelistv5high Β· 7.5
cve-2026-76879
Wireshark versions 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 contain a stack-based buffer overflow in the C12.22 protocol dissector, which can be exploited to crash the application, resulting in a denial of service. This could be relevant where Wireshark is deployed in automotive systems for network analysis or diagnostics, but the advisory does not confirm automotive use. Confirm applicability through the product SBOM or dependency inventory.
csaf_opensusehigh Β· 7.5
rhsa-2026:55440
This security update addresses multiple vulnerabilities in GLib, a software library used for handling data structures and system functions. The flaws could allow an attacker to cause denial-of-service conditions through memory or CPU exhaustion, crash the application, or disclose small amounts of sensitive data, with one issue enabling file exfiltration via a malicious D-Bus server. The advisory does not confirm automotive deployment, so this could be relevant where GLib is used in automotive systems; confirm applicability through the product SBOM or dependency inventory.
csaf_siemenshigh Β· 7.5
ssa-077553
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically the Siemens License Server (SLS) software used to manage software licenses for engineering and production tools. An attacker could exploit these flaws to gain full administrative control of the server or remotely read sensitive files, potentially disrupting vehicle production or stealing proprietary manufacturing data. Siemens has released a patched version, and updating the software is strongly recommended to protect plant operations.
cvelistv5high Β· 7.5
cve-2026-11810
This vulnerability affects the real-time operating system Zephyr, which is deployed in vehicle ECUs, ADAS controllers, and body control modules, specifically within its UpdateHub OTA agent used for firmware updates. An attacker controlling or intercepting the update server can send malformed metadata that causes a NULL-pointer dereference, crashing or resetting the device. This is a remotely triggerable denial-of-service flaw limited to availability, with no data corruption or theft, and the fix validates metadata before processing.
cvelistv5high Β· 7.5
cve-2026-65819
This vulnerability affects the CAN bus / automotive Ethernet network that connects ECUs within vehicles, as gopacket is a packet processing library used in automotive diagnostic tools and network monitoring systems. An attacker can send a specially crafted network packet to a system using gopacket, causing it to crash and deny service, which could disrupt vehicle diagnostics or fleet management operations. The severity is high because the attack requires no authentication and can be triggered remotely, though it primarily impacts backend tools rather than the vehicle itself.
csaf_sickhigh Β· 7.5
sca-2026-0009
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically several Endress+Hauser products accessible via ethernet. A remote unauthenticated attacker could exploit this flaw to change the device's IP address through the SopasET interface, potentially causing a Denial of Service that disrupts production or monitoring. While no public exploits are known, the risk is significant enough that manufacturers should immediately restrict network access to these devices.
csaf_endresshauseraghigh Β· 7.5
vde-2026-045
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically Endress+Hauser and SICK MSC800 devices used for process automation and measurement. A remote unauthenticated attacker can modify the device's IP address through the SopasET interface, potentially causing a Denial of Service that could disrupt production line operations. While no public exploits exist yet, the severity is significant for automotive plants relying on these devices, and no complete remediation is available beyond restricting network access and upgrading to the latest firmware versions.
csaf_murrelektronikgmbhhigh Β· 7.5
vde-2026-062
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically Murrelektronik Profinet devices that ship with default SNMP community names 'public' and 'private'. An unauthenticated attacker with network access to these devices can read sensitive configuration data and potentially modify device settings, which could disrupt production line operations or alter the behavior of connected industrial processes. The severity is significant because no vendor fix is available until early 2027 for most products, leaving automotive plants reliant on network segmentation and access controls to prevent exploitation.
csaf_murrelektronikgmbhhigh Β· 7.5
vde-2026-063
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically Murrelektronik network-enabled devices used in production environments. An attacker can exploit the SNMP service to amplify traffic by up to 100x and launch denial-of-service attacks against third parties, while also potentially degrading the device's responsiveness for legitimate production traffic. The vulnerability is rated as high severity because it requires no authentication and can be triggered remotely over the network, though a firmware fix is not expected until early 2027.
nvdhigh Β· 7.4
cve-2026-42784
A flaw in the sequoia-openpgp library causes it to incorrectly infer key flags for older certificates when a key flags subpacket is missing, allowing an attacker to bypass the back-signature check, illegitimately bind an arbitrary subkey to their own certificate, and forge signatures, completely compromising cryptographic integrity. This could be relevant where sequoia-openpgp is deployed in automotive systems, such as in secure update signing or attestation components. Confirm applicability through the product SBOM or dependency inventory.
csaf_nozominetworkshigh Β· 7.4
nn-2026:19-01
An access control vulnerability was found in the Credentials Manager of Guardian/CMC versions before 26.3.0, caused by insufficient validation of user privileges, meaning unauthorized users could potentially perform actions they should not be allowed to do. The risk level for Nozomi customers is rated as High. This could be relevant where Guardian/CMC is deployed in automotive or industrial network monitoring systems, but the advisory does not confirm a direct automotive connection; confirm applicability through the product SBOM or dependency inventory.
cvelistv5high Β· 7.4
cve-2026-81020
wolfEngine before 1.4.1 reuses the same AES-GCM nonce for every TLS 1.2 and DTLS 1.2 record, allowing an attacker to recover plaintext and forge authentication tags. This could be relevant where wolfEngine is deployed in automotive systems, such as secure communications in vehicles or telematics. Confirm applicability through the product SBOM or dependency inventory.
cvelistv5high Β· 7.4
cve-2026-81019
wolfProvider before version 1.2.2 has a flaw where it reuses the same AES-GCM nonce for every TLS 1.2 and DTLS 1.2 record, meaning all records in a connection are encrypted with an identical key and nonce pair. An attacker could exploit this to recover plaintext from encrypted records and forge authentication tags, compromising data confidentiality and integrity. This could be relevant where wolfProvider is deployed in automotive systems, such as secure communications in vehicles or telematics; confirm applicability through the product SBOM or dependency inventory.
csaf_siemenshigh Β· 7.4
ssa-828211
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically the SIMATIC S7-PLCSIM Advanced software used for simulating programmable logic controllers. An unauthenticated attacker on the local network could flood the system with high-volume multicast traffic, exhausting memory and causing the application to crash, which would halt production simulation and require a manual restart. Siemens is preparing fixes and recommends protecting network access with appropriate security measures to prevent disruption to manufacturing operations.
nvdhigh Β· 7.3
cve-2026-60063
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines. A local attacker could exploit an out-of-bounds write in the Productivity Suite to corrupt kernel memory, potentially gaining higher system privileges or causing system crashes. This is a serious risk for production environments, as it could disrupt vehicle assembly or quality control processes.
nvdhigh Β· 7.3
cve-2026-61389
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines. A local attacker could exploit an out-of-bounds write flaw in the AutomationDirect Productivity Suite to corrupt kernel memory, potentially leading to privilege escalation or system instability. This is a serious risk for production environments, as it could disrupt vehicle assembly or quality control processes.
nvdhigh Β· 7.2
cve-2026-52727
LXC CI images built from the Arch Linux configuration before 2026-05-28 retained a shared pacman package-signing private key and distributed it to every container or virtual machine created from those images. An attacker who controls or intercepts an HTTP package mirror could use that key to sign malicious packages that affected clients trust, allowing arbitrary code execution as root. This could be relevant where LXC containers or virtual machines are deployed in automotive systems; confirm applicability through the product SBOM or dependency inventory.
nvdhigh Β· 7.2
cve-2026-47773
ArduinoBLE versions before 2.0.2 contain a missing bounds check in the Bluetooth Low Energy ATT write request handler, allowing a remote unauthenticated BLE client to corrupt memory in the ATTClass global object on affected devices. This could be relevant where ArduinoBLE is deployed in automotive or embedded systems, particularly on devices with one or more characteristics configured with the BLEEncryption property. The advisory does not state a formal severity rating; the fix is included starting from the 2.0.2 release. Confirm applicability through the product SBOM or dependency inventory.
csaf_siemenshigh Β· 7.2
ssa-104023
This vulnerability affects industrial control systems deployed in automotive manufacturing plants and assembly lines, specifically the Siemens RUGGEDCOM APE1808 devices that run Palo Alto Networks PAN-OS software. An attacker who is already an authenticated administrator could exploit cross-site scripting, privilege escalation, or command injection flaws to gain root access and execute arbitrary commands on the device. Siemens recommends implementing Palo Alto Networks' workarounds and following industrial security guidelines to mitigate these risks.