Skip to content
New Vulnerabilities Discovered in Serial-to-IP Converters Threaten Critical Infrastructure

New Vulnerabilities Discovered in Serial-to-IP Converters Threaten Critical Infrastructure

First seen 21 Apr 2026, 13:58 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •April 22, 2026 at 13:01 UTC
  • •Forescout identified 22 new vulnerabilities in serial-to-IP converters from Lantronix and Silex.
  • •These vulnerabilities can be exploited without authentication, posing severe risks to critical infrastructure.
  • •CISA has warned operators to strengthen cybersecurity measures following a related cyberattack on Poland's energy grid.

Forescout Technologies has identified 22 new vulnerabilities in serial-to-IP converters from Lantronix and Silex, which are widely used in critical sectors like healthcare and utilities. These vulnerabilities, collectively known as BRIDGE:BREAK, can be exploited without authentication, allowing attackers to perform remote code execution, OS command injection, and data tampering. The research highlights the risk posed by insecure edge devices, particularly following a recent cyberattack on Poland's energy grid that exploited similar vulnerabilities. The Cybersecurity and Infrastructure Security Agency (CISA) has issued alerts urging critical infrastructure operators to enhance their cybersecurity measures. The vulnerabilities are particularly concerning as they can disrupt operations and compromise data integrity. Both Lantronix and Silex have issued patches in response to these findings. The vulnerabilities are significant due to the potential for widespread impact across various industries reliant on these devices.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 172d ago How this analysis works

Timeline

2026-03-11
CVE-2025-70082 published
2026-04-20
Forescout announces 22 new vulnerabilities in serial-to-IP converters
2026-04-21
CISA issues alerts regarding vulnerabilities in edge devices

More articles in this cluster (9)

Following this threat?

Track Forescout Technologies and CVE-2025-70082 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed