CVE-2026-9128: Studio 5000 Logix Designer® – Multiple Vulnerabilities

Published Jul 14, 2026
·
Updated

A code execution security issue exists within Studio 5000 Logix Designer® due to an unquoted search path in the External Tools configuration. The executable paths specified in the external tools configuration file are not properly quoted, and because these paths contain spaces, the operating system may resolve them to unintended executables placed earlier in the search order. If exploited, an attacker could plant a malicious executable in a location within the search path, resulting in arbitrary code execution with the same permissions of the user running the application.

Affected Software

1 affected component
Rockwell Automation Studio 5000 Logix Designer

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Update the External Tools configuration so that every executable path specified is properly quoted. This prevents the OS from resolving paths containing spaces to unintended executables earlier in the search order.

    Studio 5000 Logix Designer (External Tools configuration) Executable paths in the external tools configuration file = Quote all executable paths (wrap each path containing spaces in quotes)

Event History

Jul 14, 2026
CVE Published
via MITRE·03:12 PM
Data Sourced
via MITRE·03:12 PM
DescriptionWeakness
Data Sourced
via NVD·04:17 PM
DescriptionSeverityWeakness
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2026-9128?

The severity of CVE-2026-9128 is high with a CVSS score of 7.3.

2

How do I fix CVE-2026-9128?

To fix CVE-2026-9128, ensure that the executable paths in the External Tools configuration are properly quoted to address the unquoted search path issue.

3

What are the potential risks associated with CVE-2026-9128?

The potential risks of CVE-2026-9128 include unauthorized code execution due to improper handling of executable paths.

4

Which software is affected by CVE-2026-9128?

CVE-2026-9128 affects Rockwell Automation Studio 5000 Logix Designer.

5

When was CVE-2026-9128 published?

CVE-2026-9128 was published on July 14, 2026.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203