SecAlerts
i

inductiveautomation

Security Risk Profile

63
/100
high

Security Risk Score

Comprehensive risk assessment based on 40 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from April 3, 2015 to present

40
Total CVEs
31
Critical+High
0
Exploited
28
Unpatched

Threat Assessment

Avg CVSS
7.8
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
28
Critical/High
Risk Level
63/100
high

Severity Distribution

Critical
8
High
23
Medium
8
Low
1

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
0

Age Distribution

Common Weaknesses (CWE)

1
Path Traversal
2
2
XEE
2
3
XSS
2
4
Infoleak
2

Most Affected Products

1. inductiveautomation Ignition39
2. Inductive Automation Ignition24
3. inductiveautomation Ignition Gateway8
4. Inductive Automation Ignition 7 Gateway versions prior to 7.9.144
5. Inductive Automation Ignition 8 Gateway versions prior to 8.0.104

Recent Vulnerabilities

See more →
CVE-2025-13913
CVSS 5.4medium

Inductive Automation Ignition Software Deserialization of Untrusted Data

Mar 12, 2026
CVE-2023-50233
CVSS 8.8high

Inductive Automation Ignition getJavaExecutable Directory Traversal Remote Code Execution Vulnerability

May 3, 2024🔧 No Patch
CVE-2023-50232
CVSS 8.8high

Inductive Automation Ignition getParams Argument Injection Remote Code Execution Vulnerability

May 3, 2024🔧 No Patch
CVE-2023-50223
CVSS 8.8high

Inductive Automation Ignition ExtendedDocumentCodec Deserialization of Untrusted Data Remote Code Execution Vulnerability

May 3, 2024🔧 No Patch
CVE-2023-50222
CVSS 8.8high

Inductive Automation Ignition ResponseParser Notification Deserialization of Untrusted Data Remote Code Execution Vulnerability

May 3, 2024🔧 No Patch
CVE-2023-50221
CVSS 8.8high

Inductive Automation Ignition ResponseParser SerializedResponse Deserialization of Untrusted Data Remote Code Execution Vulnerability

May 3, 2024🔧 No Patch
CVE-2023-50220
CVSS 8.8high

Inductive Automation Ignition Base64Element Deserialization of Untrusted Data Remote Code Execution Vulnerability

May 3, 2024🔧 No Patch
CVE-2023-50219
CVSS 8.8high

Inductive Automation Ignition RunQuery Deserialization of Untrusted Data Remote Code Execution Vulnerability

May 3, 2024🔧 No Patch
CVE-2023-50218
CVSS 8.8high

Inductive Automation Ignition ModuleInvoke Deserialization of Untrusted Data Remote Code Execution Vulnerability

May 3, 2024🔧 No Patch
CVE-2023-39477
CVSS 7.5high

(0Day) (Pwn2Own) Inductive Automation Ignition ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability

May 3, 2024🔧 No Patch

Monitor inductiveautomation in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.