CVE-2025-1384: Omron Corporation Machine Automation Controller Nj-Series

High severity, CVSS 7.0. EPSS: 0.2% chance of exploitation in the next 30 days.

Least Privilege Violation (CWE-272) Vulnerability exists in the communication function between the NJ/NX-series Machine Automation Controllers and the Sysmac Studio Software. An attacker may use this vulnerability to perform unauthorized access and to execute unauthorized code remotely to the controller products.

Affected products

  • Omron Corporation Machine Automation Controller Nj-Series: up to and including 1.67.00; up to and including 1.67.02; up to and including 1.68.01; up to and including 1.67.01
  • Omron Corporation Machine Automation Controller NX-Series: up to and including 1.68.01; up to and including 1.64.09; up to and including 1.35.09
  • Omron Corporation Sysmac Studio Software

Published 2025-07-14. Last modified 2026-06-17.