pcpp::ModbusLayer::getLength in the library Packet++/header/ModbusLayer.h of the component Modbus Protocol Handler. The manipulation of the argument length results in heap-based buffer overflow.This vulnerability is reported as CVE-2026-13590. The attack can be launched remotely. Moreover, an exploit is present.
Applying a patch is advised to resolve this issue.
SOCIAL SHARE CARD GENERATOR