CVE-2026-12659: Rockwell Automation The Flex 5000 Ethernet/ip Adapter

High severity, CVSS 8.7. EPSS: 0.4% chance of exploitation in the next 30 days.

A denial-of-service security issue exists in the affected products. The security issue stems from improper handling of exceptional conditions when processing crafted CIP packets sent to the adapter. A power cycle is required to recover the module and associated I/O.

Affected products

Published 2026-07-14. Last modified 2026-07-14.