CVE-2025-53476: OpenPLC v3

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A denial of service vulnerability exists in the ModbusTCP server functionality of OpenPLC _v3 a931181e8b81e36fadf7b74d5cba99b73c3f6d58. A specially crafted series of network connections can lead to the server not processing subsequent Modbus requests. An attacker can open a series of TCP connections to trigger this vulnerability.

Affected products

Published 2025-10-07. Last modified 2026-10-08.