CVE detail
CVE-2026-65423
An integer overflow in the UA_Variant arrayDimensions product computation in open62541 may allow a remote attacker to trigger an out-of-bounds write.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 20.8 · diversity 15.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 7
- within the 30d window
- Peak daily
- 7
- highest bucket
Evidence
Source links by recency
7 source links · newest first
- https://www.o6-automation.com/contactwww.o6-automation.com
No excerpt available.
referencewww.o6-automation.comJul 30, 2026, 11:16 PM - https://github.com/open62541/open62541/pull/8238/commits/afab4107bfd161da9ce8bb30ed77f3968c9c97dfgithub.com
No excerpt available.
Exploitgithub.comJul 30, 2026, 11:16 PM - https://github.com/open62541/open62541/pull/8237/commits/1b71d9c5d9c4d02d4729b8903a52e9f530bf804egithub.com
No excerpt available.
Exploitgithub.comJul 30, 2026, 11:16 PM - https://github.com/open62541/open62541/pull/8236/commits/06b99fef667c8ec5bdf0605b4f00c84fcc1d3a60github.com
No excerpt available.
Exploitgithub.comJul 30, 2026, 11:16 PM - https://github.com/open62541/open62541/pull/8235/commits/b666d35769ce63998442e4d0810a3fb10b50179fgithub.com
No excerpt available.
Exploitgithub.comJul 30, 2026, 11:16 PM No excerpt available.
Exploitgithub.comJul 30, 2026, 11:16 PM- o6 Automation open62541CISA Alerts
View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to disclose sensitive information, cause a denial of service, or potentially execute arbitrary code. The following versions of o6 Automation open62541 are affected: open62541 on Windows and Linux >=from_1.3.0| =from_1.4.0| =from_1.5.0| =from_1.3.0| =from_1.4.0| =from_1.5.0| =from_1.3.0| =from_1.4.0| =from_1.5.0| =from_1.3.0| =from_1.4.0| =from_1.5.0| =from_1.3.0| =from_1.4.0| =from_1.5.0|<=1.5.4, o6 Automa
governmentwww.cisa.govJul 30, 2026, 12:00 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-63559CVSS 8.7 · High
An integer overflow in the UA_Variant arrayDimensions product computation in open62541 may allow a remote attacker to read out-of-bounds heap memory, potentially disclosing sens…
- CVE-2026-16529CVSS 7.5 · High
A signed integer overflow in the PCP __pmGetPDU() function can be exploited via crafted network packets during PDU processing or SASL negotiation. This permanently blinds the affe…
- CVE-2026-17726CVSS 9.6 · Critical
Integer overflow in WebGL in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium s…
- CVE-2026-17717CVSS 9.6 · Critical
Integer overflow in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security sev…
- CVE-2026-17705CVSS 8.8 · High
Integer overflow in libxml in Google Chrome prior to 151.0.7922.72 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security…
- CVE-2026-17682CVSS 9.6 · Critical
Integer overflow in ANGLE in Google Chrome prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a…