VYPR

snap7

by Davenardella

CVEs (2)

  • CVE-2026-16225Jul 19, 2026
    risk 0.00cvss epss 0.00

    A security flaw has been discovered in davenardella snap7 up to 1.4.3. The impacted element is the function TSnap7Peer::NegotiatePDULength of the file src/core/s7_peer.cpp. The manipulation of the argument PDULength results in out-of-bounds write. The attack can be executed…

  • CVE-2026-15105Jul 8, 2026
    risk 0.00cvss epss 0.00

    A flaw has been found in davenardella snap7 up to 1.4.3. This affects the function TS7Worker::PerformFunctionRead of the file src/core/s7_server.cpp of the component ReadVar Request Handler. This manipulation causes out-of-bounds write. The attack requires access to the local…