Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · mitsubishi

mitsubishi

· 1 Critical

Total CVEs

9

Critical

1

Products

183

Search All CVEs →

9

Products (183)

melsec iq-r r12 ccpu-v firmware4 CVEsmelsec iq-r r12 ccpu-v4 CVEsmelsec iq-r r120 sfcpu firmware4 CVEsmelsec iq-r r120 sfcpu4 CVEsmelsec iq-r r32 cpu firmware4 CVEsmelsec iq-r r32 cpu4 CVEsmelsec iq-r r16 sfcpu firmware4 CVEsmelsec iq-r r16 sfcpu4 CVEsmelsec iq-r r32 sfcpu firmware4 CVEsmelsec iq-r r32 sfcpu4 CVEsmelsec iq-r r120 cpu firmware4 CVEsmelsec iq-r r120 cpu4 CVEsmelsec iq-r r08 sfcpu firmware4 CVEsmelsec iq-r r08 sfcpu4 CVEsmelsec iq-r r08 cpu firmware4 CVEsmelsec iq-r r08 cpu4 CVEsmelsec iq-r r04 cpu firmware4 CVEsmelsec iq-r r04 cpu4 CVEsmelsec iq-r r02 cpu firmware4 CVEsmelsec iq-r r02 cpu4 CVEsmelsec iq-r r01 cpu firmware4 CVEsmelsec iq-r r01 cpu4 CVEsmelipc mi5122-vw4 CVEsmelipc mi5122-vw firmware4 CVEsmelsec iq-r r00 cpu firmware4 CVEsmelsec iq-r r00 cpu4 CVEsmelsec iq-r r16 cpu firmware4 CVEsmelsec iq-r r16 cpu4 CVEstw-50a firmware3 CVEsae-200a firmware3 CVEsae-200e3 CVEsae-200e firmware3 CVEsae-50a3 CVEsae-50a firmware3 CVEsae-50e3 CVEsae-50e firmware3 CVEsag-150a-a3 CVEsag-150a-a firmware3 CVEsag-150a-j3 CVEsag-150a-j firmware3 CVEseb-50gu-a3 CVEseb-50gu-a firmware3 CVEseb-50gu-j3 CVEseb-50gu-j firmware3 CVEsew-50a3 CVEsew-50a firmware3 CVEsew-50e3 CVEsew-50e firmware3 CVEsgb-50a3 CVEsgb-50a firmware3 CVEsgb-50ada-a3 CVEsgb-50ada-a firmware3 CVEsgb-50ada-j3 CVEsgb-50ada-j firmware3 CVEsmelsec q12dccpu-v firmware3 CVEsmelsec q13udecpu3 CVEsmelsec q13udecpu firmware3 CVEsmelsec q13udpvcpu3 CVEsmelsec q13udpvcpu firmware3 CVEsmelsec q13udvcpu3 CVEsmelsec q13udvcpu firmware3 CVEsmelsec q170mcpu3 CVEsmelsec q170mcpu firmware3 CVEsmelsec q170mscpu\(-s1\)3 CVEsmelsec q170mscpu\(-s1\) firmware3 CVEsmelsec q172dcpu-s13 CVEsmelsec q172dcpu-s1 firmware3 CVEsmelsec q172dscpu3 CVEsmelsec q172dscpu firmware3 CVEsmelsec q173dcpu-s13 CVEsmelsec q173dcpu-s1 firmware3 CVEsmelsec q173dscpu3 CVEsmelsec q173dscpu firmware3 CVEsmelsec q20udecpu3 CVEsmelsec q20udecpu firmware3 CVEsmelsec q24dhccpu-ls3 CVEsmelsec q24dhccpu-ls firmware3 CVEsmelsec q24dhccpu-v\(g\)3 CVEsmelsec q24dhccpu-v\(g\) firmware3 CVEsmelsec q26dhccpu-ls3 CVEsmelsec q26dhccpu-ls firmware3 CVEsmelsec q26udecpu3 CVEsmelsec q26udecpu firmware3 CVEsmelsec q26udpvcpu3 CVEsmelsec q26udpvcpu firmware3 CVEsmelsec q26udvcpu3 CVEsmelsec q26udvcpu firmware3 CVEsmelsec q50udecpu3 CVEsmelsec q50udecpu firmware3 CVEste-200a3 CVEste-200a firmware3 CVEste-50a3 CVEste-50a firmware3 CVEstw-50a3 CVEsae-200a3 CVEsmelsec iq-r r04 pcpu3 CVEsmelsec iq-r r04 pcpu firmware3 CVEsmelsec iq-r r08 pcpu3 CVEsmelsec iq-r r08 pcpu firmware3 CVEsmelsec iq-r r120 pcpu3 CVEsmelsec iq-r r120 pcpu firmware3 CVEsmelsec iq-r r16 mtcpu3 CVEsmelsec iq-r r16 mtcpu firmware3 CVEsmelsec iq-r r16 pcpu3 CVEsmelsec iq-r r16 pcpu firmware3 CVEsmelsec iq-r r32 mtcpu3 CVEsmelsec iq-r r32 mtcpu firmware3 CVEsmelsec iq-r r32 pcpu3 CVEsmelsec iq-r r32 pcpu firmware3 CVEsmelsec iq-r r64 mtcpu3 CVEsmelsec iq-r r64 mtcpu firmware3 CVEsmelsec l02cpu\(-p\)3 CVEsmelsec l02cpu\(-p\) firmware3 CVEsmelsec l06cpu\(-p\)3 CVEsmelsec l06cpu\(-p\) firmware3 CVEsmelsec l26cpu-\(p\)bt3 CVEsmelsec l26cpu-\(p\)bt firmware3 CVEsmelsec l26cpu\(-p\)3 CVEsmelsec l26cpu\(-p\) firmware3 CVEsmelsec mr-mq1003 CVEsmelsec mr-mq100 firmware3 CVEsmelsec q03udecpu3 CVEsmelsec q03udecpu firmware3 CVEsmelsec q03udvcpu3 CVEsmelsec q03udvcpu firmware3 CVEsmelsec q04udecpu3 CVEsmelsec q04udecpu firmware3 CVEsmelsec q04udpvcpu3 CVEsmelsec q04udpvcpu firmware3 CVEsmelsec q04udvcpu3 CVEsmelsec q04udvcpu firmware3 CVEsmelsec q06udecpu3 CVEsmelsec q06udecpu firmware3 CVEsmelsec q06udpvcpu3 CVEsmelsec q06udpvcpu firmware3 CVEsmelsec q06udvcpu3 CVEsmelsec q06udvcpu firmware3 CVEsmelsec q100udecpu3 CVEsmelsec q100udecpu firmware3 CVEsmelsec q10udecpu3 CVEsmelsec q10udecpu firmware3 CVEsmelsec q12dccpu-v3 CVEspac-yg50eca firmware2 CVEsg-50a firmware2 CVEsg-50a2 CVEscms-rmd-j firmware2 CVEscms-rmd-j2 CVEspac-yg50eca2 CVEsmelsec iq-l l04 hcpu firmware1 CVEsmelsec iq-l l04 hcpu1 CVEsgt softgot2000 firmware1 CVEsgt softgot20001 CVEsgt27 firmware1 CVEsgt271 CVEsgt25 firmware1 CVEsgt251 CVEsae-50j1 CVEsmelsec iq-r rd81mes96n firmware1 CVEsmelsec iq-r r04 sfcpu1 CVEsmelsec iq-r r04 sfcpu firmware1 CVEsgt23 firmware1 CVEsgt231 CVEsmelsec qj71e71-100 firmware1 CVEsgt21 firmware1 CVEsgt211 CVEsgs21 firmware1 CVEsgs211 CVEsae-200j firmware1 CVEsg-150ad firmware1 CVEsg-150ad1 CVEsew-50j firmware1 CVEsew-50j1 CVEsae-200j1 CVEsmelsec lj71e71-1001 CVEsmelsec lj71e71-100 firmware1 CVEsmelsec iq-r rd81mes96n1 CVEsmelsec iq-l l08 hcpu1 CVEsae-50j firmware1 CVEsmelsec iq-l l08 hcpu firmware1 CVEsmelsec iq-l l16 hcpu1 CVEsmelsec iq-l l16 hcpu firmware1 CVEsmelsec iq-l l32 hcpu1 CVEsmelsec iq-l l32 hcpu firmware1 CVEs

Recent Vulnerabilities

View all 9
CVE-2022-33324HIGH 7.5

Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU Firmware versions "32" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R04/08/16/32/120(EN)CPU Firmware versions "65" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120SFCPU Firmware versions "29" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R08/16/32/120PSFCPU Firmware versions "08" and prior, Mitsubishi Electric Corporation MELSEC iQ-R Series R12CCPU-V Firmware versions "17" and prior, Mitsubishi Electric Corporation MELSEC iQ-L Series L04/08/16/32HCPU Firmware versions "05" and prior and Mitsubishi Electric Corporation MELIPC Series MI5122-VW Firmware versions "07" and prior allows a remote unauthenticated attacker to cause a Denial of Service condition in Ethernet communication on the module by sending specially crafted packets. A system reset of the module is required for recovery.

CVE-2022-24296HIGH 7.5

Use of a Broken or Risky Cryptographic Algorithm vulnerability in Air Conditioning System G-150AD Ver. 3.21 and prior, Air Conditioning System AG-150A-A Ver. 3.21 and prior, Air Conditioning System AG-150A-J Ver. 3.21 and prior, Air Conditioning System GB-50AD Ver. 3.21 and prior, Air Conditioning System GB-50ADA-A Ver. 3.21 and prior, Air Conditioning System GB-50ADA-J Ver. 3.21 and prior, Air Conditioning System EB-50GU-A Ver. 7.10 and prior, Air Conditioning System EB-50GU-J Ver. 7.10 and prior, Air Conditioning System AE-200J Ver. 7.97 and prior, Air Conditioning System AE-200A Ver. 7.97 and prior, Air Conditioning System AE-200E Ver. 7.97 and prior, Air Conditioning System AE-50J Ver. 7.97 and prior, Air Conditioning System AE-50A Ver. 7.97 and prior, Air Conditioning System AE-50E Ver. 7.97 and prior, Air Conditioning System EW-50J Ver. 7.97 and prior, Air Conditioning System EW-50A Ver. 7.97 and prior, Air Conditioning System EW-50E Ver. 7.97 and prior, Air Conditioning System TE-200A Ver. 7.97 and prior, Air Conditioning System TE-50A Ver. 7.97 and prior and Air Conditioning System TW-50A Ver. 7.97 and prior allows a remote unauthenticated attacker to cause a disclosure of encrypted message of the air conditioning systems by sniffing encrypted communications.

CVE-2022-25163CRITICAL 9.8

Improper Input Validation vulnerability in Mitsubishi Electric MELSEC-Q Series QJ71E71-100 first 5 digits of serial number "24061" or prior, Mitsubishi Electric MELSEC-L series LJ71E71-100 first 5 digits of serial number "24061" or prior and Mitsubishi Electric MELSEC iQ-R Series RD81MES96N firmware version "08" or prior allows a remote unauthenticated attacker to cause a denial of service (DoS) condition or execute malicious code on the target products by sending specially crafted packets.

CVE-2021-20611HIGH 7.5

Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120SFCPU, MELSEC iQ-R Series R08/16/32/120PCPU, MELSEC iQ-R Series R08/16/32/120PSFCPU, MELSEC iQ-R Series R16/32/64MTCPU, MELSEC iQ-R Series R12CCPU-V, MELSEC Q Series Q03UDECPU, MELSEC Q Series Q04/06/10/13/20/26/50/100UDEHCPU, MELSEC Q Series Q03/04/06/13/26UDVCPU, MELSEC Q Series Q04/06/13/26UDPVCPU, MELSEC Q Series Q12DCCPU-V, MELSEC Q Series Q24DHCCPU-V(G), MELSEC Q Series Q24/26DHCCPU-LS, MELSEC Q Series MR-MQ100, MELSEC Q Series Q172/173DCPU-S1, MELSEC Q Series Q172/173DSCPU, MELSEC Q Series Q170MCPU, MELSEC Q Series Q170MSCPU(-S1), MELSEC L Series L02/06/26CPU(-P), MELSEC L Series L26CPU-(P)BT and MELIPC Series MI5122-VW allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by sending specially crafted packets. System reset is required for recovery.

CVE-2021-20610HIGH 7.5

Improper Handling of Length Parameter Inconsistency vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120SFCPU, MELSEC iQ-R Series R08/16/32/120PCPU, MELSEC iQ-R Series R08/16/32/120PSFCPU, MELSEC iQ-R Series R16/32/64MTCPU, MELSEC iQ-R Series R12CCPU-V, MELSEC Q Series Q03UDECPU, MELSEC Q Series Q04/06/10/13/20/26/50/100UDEHCPU, MELSEC Q Series Q03/04/06/13/26UDVCPU, MELSEC Q Series Q04/06/13/26UDPVCPU, MELSEC Q Series Q12DCCPU-V, MELSEC Q Series Q24DHCCPU-V(G), MELSEC Q Series Q24/26DHCCPU-LS, MELSEC Q Series MR-MQ100, MELSEC Q Series Q172/173DCPU-S1, MELSEC Q Series Q172/173DSCPU, MELSEC Q Series Q170MCPU, MELSEC Q Series Q170MSCPU(-S1), MELSEC L Series L02/06/26CPU(-P), MELSEC L Series L26CPU-(P)BT and MELIPC Series MI5122-VW allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by sending specially crafted packets. System reset is required for recovery.

CVE-2021-20609HIGH 7.5

Uncontrolled Resource Consumption vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120SFCPU, MELSEC iQ-R Series R08/16/32/120PCPU, MELSEC iQ-R Series R08/16/32/120PSFCPU, MELSEC iQ-R Series R16/32/64MTCPU, MELSEC iQ-R Series R12CCPU-V, MELSEC Q Series Q03UDECPU, MELSEC Q Series Q04/06/10/13/20/26/50/100UDEHCPU, MELSEC Q Series Q03/04/06/13/26UDVCPU, MELSEC Q Series Q04/06/13/26UDPVCPU, MELSEC Q Series Q12DCCPU-V, MELSEC Q Series Q24DHCCPU-V(G), MELSEC Q Series Q24/26DHCCPU-LS, MELSEC Q Series MR-MQ100, MELSEC Q Series Q172/173DCPU-S1, MELSEC Q Series Q172/173DSCPU, MELSEC Q Series Q170MCPU, MELSEC Q Series Q170MSCPU(-S1), MELSEC L Series L02/06/26CPU(-P), MELSEC L Series L26CPU-(P)BT and MELIPC Series MI5122-VW allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by sending specially crafted packets. System reset is required for recovery.

CVE-2021-20593HIGH 7.1

Incorrect Implementation of Authentication Algorithm in Mitsubishi Electric Air Conditioning System/Centralized Controllers (G-50A Ver.2.50 to Ver. 3.35, GB-50A Ver.2.50 to Ver. 3.35, AG-150A-A Ver.3.20 and prior, AG-150A-J Ver.3.20 and prior, GB-50ADA-A Ver.3.20 and prior, GB-50ADA-J Ver.3.20 and prior, EB-50GU-A Ver 7.09 and prior, EB-50GU-J Ver 7.09 and prior, AE-200A Ver 7.93 and prior, AE-200E Ver 7.93 and prior, AE-50A Ver 7.93 and prior, AE-50E Ver 7.93 and prior, EW-50A Ver 7.93 and prior, EW-50E Ver 7.93 and prior, TE-200A Ver 7.93 and prior, TE-50A Ver 7.93 and prior, TW-50A Ver 7.93 and prior, CMS-RMD-J Ver.1.30 and prior) and Air Conditioning System/Expansion Controllers (PAC-YG50ECA Ver.2.20 and prior) allows a remote authenticated attacker to impersonate administrators to disclose configuration information of the air conditioning system and tamper information (e.g. operation information and configuration of air conditioning system) by exploiting this vulnerability.

CVE-2021-20595HIGH 8.2

Improper Restriction of XML External Entity Reference vulnerability in Mitsubishi Electric Air Conditioning System/Centralized Controllers (G-50A Ver.3.35 and prior, GB-50A Ver.3.35 and prior, GB-24A Ver.9.11 and prior, AG-150A-A Ver.3.20 and prior, AG-150A-J Ver.3.20 and prior, GB-50ADA-A Ver.3.20 and prior, GB-50ADA-J Ver.3.20 and prior, EB-50GU-A Ver 7.09 and prior, EB-50GU-J Ver 7.09 and prior, AE-200A Ver 7.93 and prior, AE-200E Ver 7.93 and prior, AE-50A Ver 7.93 and prior, AE-50E Ver 7.93 and prior, EW-50A Ver 7.93 and prior, EW-50E Ver 7.93 and prior, TE-200A Ver 7.93 and prior, TE-50A Ver 7.93 and prior, TW-50A Ver 7.93 and prior, CMS-RMD-J Ver.1.30 and prior), Air Conditioning System/Expansion Controllers (PAC-YG50ECA Ver.2.20 and prior) and Air Conditioning System/BM adapter(BAC-HD150 Ver.2.21 and prior) allows a remote unauthenticated attacker to disclose some of data in the air conditioning system or cause a DoS condition by sending specially crafted packets.

CVE-2021-20589HIGH 7.5

Buffer access with incorrect length value vulnerability in GOT2000 series GT27 model communication driver versions 01.19.000 through 01.38.000, GT25 model communication driver versions 01.19.000 through 01.38.000, GT23 model communication driver versions 01.19.000 through 01.38.000 and GT21 model communication driver versions 01.21.000 through 01.39.000, GOT SIMPLE series GS21 model communication driver versions 01.21.000 through 01.39.000, GT SoftGOT2000 versions 1.170C through 1.250L and Tension Controller LE7-40GU-L Screen package data for MODBUS/TCP V1.00 allows a remote unauthenticated attacker to stop the communication function of the products via specially crafted packets.