CVE-2024-22809: Tormach Pathpilot Controller

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Incorrect access control in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to access the G code's shared folder and view sensitive information.

Affected products

  • Tormach Pathpilot Controller: version 2.9.6 only

Published 2024-04-22. Last modified 2026-06-17.