Rockwell Automation Logix Platform Denial-of-Service Vulnerabilities
CVE-2026-9637 affects ControlLogix, CompactLogix, GuardLogix and Compact GuardLogix firmware versions through V36.012
Key Takeaways
- CVE-2026-9637 is a denial-of-service vulnerability in Rockwell Automation Logix Platform firmware due to improper CIP message input validation.
- Exploitation triggers a major nonrecoverable fault (MNRF), necessitating a power cycle to restore operations.
- Affected product lines include ControlLogix 5580, CompactLogix 5380, GuardLogix 5580, and Compact GuardLogix 5380 across multiple firmware releases up to V36.012.
- Vendor-released firmware updates (V37.011, 34.015, 35.014, 36.013) address the vulnerability.
Related Security News
CISA Adds Two Citrix NetScaler Vulnerabilities to Known Exploited Catalog
The Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog based on evidence of active exploitation. CVE-2026-88771 involves improper input validation and CVE-2026-88772 involves improper restriction of operations within the bounds of a memory buffer, both affecting Citrix NetScaler products. The additions trigger remediation requirements under Binding Operational Directive 26-04 for Federal Civilian Executive Branch agencies.


