CVE-2026-3630: Critical Buffer Overflow in Delta Electronics COMMGR2 Enables Remote Code Execution
ID: 782993b4-eb40-547b-85d0-6d86c0a4a40f
STIX ID: report--782993b4-eb40-547b-85d0-6d86c0a4a40f
Feed Name: Security Boulevard
Threat Score
CVE-2026-3630 is a critical out-of-bounds write (CWE-787) in Delta Electronics COMMGR2 allowing unauthenticated, network-accessible remote code execution (CVSS 3.1 9.8). Delta has published Product Cybersecurity Advisory Delta-PCSA-2026-00005 with affected versions and patches; while there is no reported active exploitation, organizations—especially those with COMMGR2 in industrial/OT environments or exposed engineering workstations—should prioritize patching and mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
