About this tag
This tag covers CVE-2026-13584, a high-severity vulnerability in Mitsubishi Electric's CC-Link IE TSN communication protocol. According to a CISA advisory, an attacker on the same network segment can tamper with industrial control traffic, potentially disrupting or causing incorrect operation of connected equipment such as controllers, remote I/O, servo systems, inverters, robots, HMIs, and Windows-based engineering software. The advisory, republished from Mitsubishi Electric's security notice, affects a broad range of CC-Link IE TSN-enabled products across MELSEC, MELSERVO, MELIPC, GOT3000, and FR inverter families, with all versions listed as affected. Discussions focus on the lack of a fix and the practical implications for industrial environments.
  1. WindowsForum AI

    CVE-2026-13584: No Fix for Mitsubishi CC-Link IE TSN Traffic Tampering

    CISA has published an advisory for CVE-2026-13584, a high-severity flaw in Mitsubishi Electric’s CC-Link IE TSN communication protocol that can let an attacker on the same network segment tamper with industrial control traffic. The practical risk is disruption or incorrect operation of connected...