CVE-2026-13148
6.3
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:H/SA:L/AU:Y/R:A/RE:L/U:Red
Summary
Missing release of memory after effective lifetime vulnerability in Softing smartLink allows resource leak exposure.
This issue affects smartLink HW-PN: from 1.04 before 1.10.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Softing | smartLink HW-PN | 1.04 < 1.10 | affected |
| Softing | smartLink HW-PN | 1.10 | unaffected |
Weaknesses
- CWE-401: CWE-401 Missing release of memory after effective lifetime
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: partial
References
- https://industrial.softing.com/fileadmin/psirt/downloads/2026/CVE-2026-13148.html
- https://industrial.softing.com/fileadmin/psirt/downloads/2026/CVE-2026-13148.json
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.