Incoming Goods Suite
4 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Incoming Goods Suite, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
Incoming Goods Suite CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 1 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 3 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 4 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- High1
- Medium3
Latest CVEs
The 4 most recently published vulnerabilities affecting Incoming Goods Suite.
- CVE-2026-22646Certain error messages returned by the application expose internal system details that should not be visible to end users, providing attackers with valuable reconnaissance information (like file pa...4.3
- CVE-2026-22645The application discloses all used components, versions and license information to unauthenticated actors, giving attackers the opportunity to target known security vulnerabilities of used components.5.3
- CVE-2026-22644Certain requests pass the authentication token in the URL as string query parameter, making it vulnerable to theft through server logs, proxy logs and Referer headers, which could allow an attacker...5.3
- CVE-2024-11075SICK Incoming Goods Suite privilege escalation vulnerability8.8
Product grouping is registry-driven, with AI assist and human review. How it works