CVE-2023-3670: Codesys Development System
High severity, CVSS 7.3. EPSS: 0.2% chance of exploitation in the next 30 days.
In CODESYS Development System 3.5.9.0 to 3.5.17.0 and CODESYS Scripting 4.0.0.0 to 4.1.0.0 unsafe directory permissions would allow an attacker with local access to the workstation to place potentially harmful and disguised scripts that could be executed by legitimate users.
Affected products
- Codesys Development System: from 3.5.9.0, before 3.5.17.0 (fixed in 3.5.17.0)
- Codesys Scripting: from 4.0.0.0, before 4.1.0.0 (fixed in 4.1.0.0)
Published 2023-07-28. Last modified 2026-06-17.