{"schema_version":1,"title":"Open62541 Project Open62541 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 18 vulnerabilities in Open62541 Project Open62541: 0 in the last 7 days and 18 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-82623, was published on 31 August 2026.","url":"https://junglewise.ai/threats/technologies/open62541","json_url":"https://junglewise.ai/threats/technologies/open62541.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/open62541","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":13,"all_time":18,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":1,"last_90_days":18,"last_365_days":18},"latest":[{"cve":"CVE-2026-82623","cvss":5.3,"epss":0.007,"slug":"cve-2026-82623-open62541-use-after-free-in-history-backend","title":"open62541 use-after-free in history backend","severity":"medium","exploited":false,"published_at":"2026-08-31T07:17:46.747+00:00","url":"https://junglewise.ai/threats/cve-2026-82623-open62541-use-after-free-in-history-backend"},{"cve":"CVE-2026-67862","cvss":7.5,"epss":0.0058,"slug":"cve-2026-67862-open62541-heap-buffer-overflow-in-high-level-attribute-reading","title":"open62541 heap-buffer-overflow in high-level attribute reading","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.597+00:00","url":"https://junglewise.ai/threats/cve-2026-67862-open62541-heap-buffer-overflow-in-high-level-attribute-reading"},{"cve":"CVE-2026-67861","cvss":7.5,"epss":0.0075,"slug":"cve-2026-67861-open62541-stack-overflow-in-ua-client-getremotedatatypes","title":"open62541 stack overflow in UA_Client_getRemoteDataTypes","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.46+00:00","url":"https://junglewise.ai/threats/cve-2026-67861-open62541-stack-overflow-in-ua-client-getremotedatatypes"},{"cve":"CVE-2026-67860","cvss":7.5,"epss":0.0046,"slug":"cve-2026-67860-open62541-heap-buffer-overflow-in-historyread-continuation-point","title":"open62541 heap buffer overflow in HistoryRead continuation point handling","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.357+00:00","url":"https://junglewise.ai/threats/cve-2026-67860-open62541-heap-buffer-overflow-in-historyread-continuation-point"},{"cve":"CVE-2026-67859","cvss":7.5,"epss":0.0082,"slug":"cve-2026-67859-open62541-buffer-overflow-in-discovery-lds-handling","title":"open62541 buffer overflow in Discovery/LDS handling","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.223+00:00","url":"https://junglewise.ai/threats/cve-2026-67859-open62541-buffer-overflow-in-discovery-lds-handling"},{"cve":"CVE-2026-67858","cvss":7.5,"epss":0.0086,"slug":"cve-2026-67858-open62541-buffer-overflow-in-local-discovery-server-multicast","title":"open62541 buffer overflow in Local Discovery Server multicast discovery","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.087+00:00","url":"https://junglewise.ai/threats/cve-2026-67858-open62541-buffer-overflow-in-local-discovery-server-multicast"},{"cve":"CVE-2026-67857","cvss":7.5,"epss":0.0063,"slug":"cve-2026-67857-open62541-out-of-bounds-read-in-responsereadnamespacesarray","title":"open62541 out-of-bounds read in responseReadNamespacesArray","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:15.957+00:00","url":"https://junglewise.ai/threats/cve-2026-67857-open62541-out-of-bounds-read-in-responsereadnamespacesarray"},{"cve":"CVE-2026-67856","cvss":7.5,"epss":0.0076,"slug":"cve-2026-67856-open62541-denial-of-service-via-subscription-requests","title":"open62541 denial of service via subscription requests","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:15.85+00:00","url":"https://junglewise.ai/threats/cve-2026-67856-open62541-denial-of-service-via-subscription-requests"},{"cve":"CVE-2026-67855","cvss":7.5,"epss":0.0051,"slug":"cve-2026-67855-open62541-heap-use-after-free-in-gds-pushmanagement-certificate","title":"open62541 heap use-after-free in GDS PushManagement certificate update","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:15.733+00:00","url":"https://junglewise.ai/threats/cve-2026-67855-open62541-heap-use-after-free-in-gds-pushmanagement-certificate"},{"cve":"CVE-2026-18785","cvss":5.3,"epss":0.0016,"slug":"cve-2026-18785-open62541-client-stack-overflow-in-ua-client-getremotedatatypes","title":"open62541 client stack overflow in UA_Client_getRemoteDataTypes","severity":"medium","exploited":false,"published_at":"2026-08-04T17:16:48.65+00:00","url":"https://junglewise.ai/threats/cve-2026-18785-open62541-client-stack-overflow-in-ua-client-getremotedatatypes"},{"cve":"CVE-2026-18784","cvss":5.3,"epss":0.0017,"slug":"cve-2026-18784-open62541-heap-buffer-overflow-in-ua-client","title":"open62541 heap buffer overflow in UA_Client_readNodeClassAttribute","severity":"medium","exploited":false,"published_at":"2026-08-04T17:16:48.473+00:00","url":"https://junglewise.ai/threats/cve-2026-18784-open62541-heap-buffer-overflow-in-ua-client"},{"cve":"CVE-2026-65423","cvss":8.8,"slug":"cve-2026-65423-o6-automation-open62541-integer-overflow-in-ua-variant","title":"o6 Automation open62541 integer overflow in UA_Variant arrayDimensions","severity":"high","exploited":false,"published_at":"2026-07-30T23:16:52.743+00:00","url":"https://junglewise.ai/threats/cve-2026-65423-o6-automation-open62541-integer-overflow-in-ua-variant"},{"cve":"CVE-2026-63362","cvss":5.9,"slug":"cve-2026-63362-o6-automation-open62541-integer-underflow-in-pubsub-signature","title":"o6 Automation open62541 integer underflow in PubSub signature verification","severity":"medium","exploited":false,"published_at":"2026-07-30T23:16:52.263+00:00","url":"https://junglewise.ai/threats/cve-2026-63362-o6-automation-open62541-integer-underflow-in-pubsub-signature"},{"cve":"CVE-2026-63035","cvss":8.1,"slug":"cve-2026-63035-o6-automation-open62541-use-after-free-in-transfersubscriptions","title":"o6 Automation open62541 use-after-free in TransferSubscriptions service","severity":"high","exploited":false,"published_at":"2026-07-30T23:16:52.07+00:00","url":"https://junglewise.ai/threats/cve-2026-63035-o6-automation-open62541-use-after-free-in-transfersubscriptions"},{"cve":"CVE-2026-63559","cvss":7.5,"slug":"cve-2026-63559-o6-automation-open62541-integer-overflow-in-ua-variant","title":"o6 Automation open62541 integer overflow in UA_Variant arrayDimensions","severity":"high","exploited":false,"published_at":"2026-07-30T22:16:55.717+00:00","url":"https://junglewise.ai/threats/cve-2026-63559-o6-automation-open62541-integer-overflow-in-ua-variant"},{"cve":"CVE-2026-15690","cvss":3.1,"slug":"cve-2026-15690-open62541-null-pointer-dereference-in-responsereadnamespacesarray","title":"open62541 null pointer dereference in responseReadNamespacesArray","severity":"low","exploited":false,"published_at":"2026-07-14T12:16:55.947+00:00","url":"https://junglewise.ai/threats/cve-2026-15690-open62541-null-pointer-dereference-in-responsereadnamespacesarray"},{"cve":"CVE-2026-11946","cvss":7.5,"slug":"cve-2026-11946-open62541-memory-exhaustion-in-getendpoints-discovery-service","title":"open62541 memory exhaustion in GetEndpoints Discovery Service","severity":"high","exploited":false,"published_at":"2026-07-02T12:16:54.74+00:00","url":"https://junglewise.ai/threats/cve-2026-11946-open62541-memory-exhaustion-in-getendpoints-discovery-service"},{"cve":"CVE-2026-33592","cvss":7.5,"slug":"cve-2026-33592-open62541-memory-exhaustion-in-findservers-discovery-service","title":"open62541 memory exhaustion in FindServers Discovery Service","severity":"high","exploited":false,"published_at":"2026-07-02T08:16:39.23+00:00","url":"https://junglewise.ai/threats/cve-2026-33592-open62541-memory-exhaustion-in-findservers-discovery-service"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":10},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[],"technology":{"hub":true,"name":"Open62541 Project Open62541","slug":"open62541","vendor":{"name":"Open62541 Project","slug":"open62541-project","url":"https://junglewise.ai/threats/vendors/open62541-project"},"aliases":[],"category":"library","homepage":"https://open62541.org/","repo_url":"https://github.com/open62541/open62541","description":"An open source implementation of OPC UA (OPC Unified Architecture) written in C.","url":"https://junglewise.ai/threats/technologies/open62541"},"most_severe":[{"cve":"CVE-2026-65423","cvss":8.8,"slug":"cve-2026-65423-o6-automation-open62541-integer-overflow-in-ua-variant","title":"o6 Automation open62541 integer overflow in UA_Variant arrayDimensions","severity":"high","exploited":false,"published_at":"2026-07-30T23:16:52.743+00:00","url":"https://junglewise.ai/threats/cve-2026-65423-o6-automation-open62541-integer-overflow-in-ua-variant"},{"cve":"CVE-2026-63035","cvss":8.1,"slug":"cve-2026-63035-o6-automation-open62541-use-after-free-in-transfersubscriptions","title":"o6 Automation open62541 use-after-free in TransferSubscriptions service","severity":"high","exploited":false,"published_at":"2026-07-30T23:16:52.07+00:00","url":"https://junglewise.ai/threats/cve-2026-63035-o6-automation-open62541-use-after-free-in-transfersubscriptions"},{"cve":"CVE-2026-67858","cvss":7.5,"epss":0.0086,"slug":"cve-2026-67858-open62541-buffer-overflow-in-local-discovery-server-multicast","title":"open62541 buffer overflow in Local Discovery Server multicast discovery","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.087+00:00","url":"https://junglewise.ai/threats/cve-2026-67858-open62541-buffer-overflow-in-local-discovery-server-multicast"},{"cve":"CVE-2026-67859","cvss":7.5,"epss":0.0082,"slug":"cve-2026-67859-open62541-buffer-overflow-in-discovery-lds-handling","title":"open62541 buffer overflow in Discovery/LDS handling","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.223+00:00","url":"https://junglewise.ai/threats/cve-2026-67859-open62541-buffer-overflow-in-discovery-lds-handling"},{"cve":"CVE-2026-67856","cvss":7.5,"epss":0.0076,"slug":"cve-2026-67856-open62541-denial-of-service-via-subscription-requests","title":"open62541 denial of service via subscription requests","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:15.85+00:00","url":"https://junglewise.ai/threats/cve-2026-67856-open62541-denial-of-service-via-subscription-requests"},{"cve":"CVE-2026-67861","cvss":7.5,"epss":0.0075,"slug":"cve-2026-67861-open62541-stack-overflow-in-ua-client-getremotedatatypes","title":"open62541 stack overflow in UA_Client_getRemoteDataTypes","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.46+00:00","url":"https://junglewise.ai/threats/cve-2026-67861-open62541-stack-overflow-in-ua-client-getremotedatatypes"},{"cve":"CVE-2026-67857","cvss":7.5,"epss":0.0063,"slug":"cve-2026-67857-open62541-out-of-bounds-read-in-responsereadnamespacesarray","title":"open62541 out-of-bounds read in responseReadNamespacesArray","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:15.957+00:00","url":"https://junglewise.ai/threats/cve-2026-67857-open62541-out-of-bounds-read-in-responsereadnamespacesarray"},{"cve":"CVE-2026-67862","cvss":7.5,"epss":0.0058,"slug":"cve-2026-67862-open62541-heap-buffer-overflow-in-high-level-attribute-reading","title":"open62541 heap-buffer-overflow in high-level attribute reading","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.597+00:00","url":"https://junglewise.ai/threats/cve-2026-67862-open62541-heap-buffer-overflow-in-high-level-attribute-reading"},{"cve":"CVE-2026-67855","cvss":7.5,"epss":0.0051,"slug":"cve-2026-67855-open62541-heap-use-after-free-in-gds-pushmanagement-certificate","title":"open62541 heap use-after-free in GDS PushManagement certificate update","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:15.733+00:00","url":"https://junglewise.ai/threats/cve-2026-67855-open62541-heap-use-after-free-in-gds-pushmanagement-certificate"},{"cve":"CVE-2026-67860","cvss":7.5,"epss":0.0046,"slug":"cve-2026-67860-open62541-heap-buffer-overflow-in-historyread-continuation-point","title":"open62541 heap buffer overflow in HistoryRead continuation point handling","severity":"high","exploited":false,"published_at":"2026-08-04T22:17:16.357+00:00","url":"https://junglewise.ai/threats/cve-2026-67860-open62541-heap-buffer-overflow-in-historyread-continuation-point"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}