Security Advisories
This page lists security advisories for Alicat products. An advisory is published when a security vulnerability in an Alicat product has been confirmed and a fix or mitigation is available, or when users need to know about a vulnerability that is being actively exploited even before a fix exists.
Every advisory we publish is listed on this page. Each has a permanent reference in the form ALICAT-SA-YYYY-NNN, which we use in release notes and in any correspondence about the issue.
To report a vulnerability, see alicat.com/security. Do not use this page to report; use [email protected].
Current advisories
No advisories have been published. This page was last reviewed on September 11, 2026.
Advisories appear below, newest first.
| Advisory | Severity | Affected products and versions | Resolution and mitigation |
|---|---|---|---|
| ALICAT-SA-YYYY-NNN Published YYYY-MM-DD Updated YYYY-MM-DD (rev N) CVE-YYYY-NNNNN |
High CVSS 3.1: 8.6 Actively exploited: No |
[Product] versions X.Y.Z and earlier Exposed only where [condition, e.g. the mixer is reachable from a network other than its installation network] |
Fixed in version X.Y.Z, available at [DOWNLOAD LINK] If you cannot update immediately: [mitigation] Summary: [one or two plain sentences on what the issue is and what an attacker could do] |
Where an advisory needs more detail than the table can hold, the Resolution column links to a full advisory document.
How to get notified
- Email. Subscribe at alicat.com/newsletter-sign-up to receive every advisory by email. You can unsubscribe at any time. We use the address only for security notifications.
- RSS. A feed of all advisories is available at alicat.com/security-advisories/feed.xml.
- Distributors. We send every advisory to our authorized distributors so they can pass it to their customers.
- Direct notice. Where we become aware that a vulnerability is being actively exploited, or of a security incident affecting an Alicat product, we contact affected users directly using the contact details we hold for them, in addition to publishing here.
Subscribing is the most reliable way to hear from us. Where we hold your contact details, for example because you bought directly from Alicat or have an open support case, we may also contact you directly.
What each advisory tells you
- Reference, publication date, and the date of the latest revision.
- The CVE identifier, where one has been assigned.
- A severity rating and CVSS score (see below), and whether we are aware of the vulnerability being exploited.
- The products, models, and versions affected, and the conditions under which a system is exposed.
- The version that contains the fix and where to obtain it, or the mitigation to apply if no fix is available yet.
- A plain description of the issue and what an attacker could do with it.
- Credit to the reporter, where they have agreed to be named.
Advisories may be updated after publication, for example when a fix becomes available for a further product or when a CVE is assigned. The revision number and date in the first column change when that happens.
Alicat may also make advisories available in a structured, machine-readable format.
Severity ratings
Alicat rates each advisory using the Common Vulnerability Scoring System (CVSS) version 3.1 base score, considering the product in its intended use.
| Rating | CVSS 3.1 base score | What it generally means |
|---|---|---|
| Critical | 9.0 to 10.0 | Remotely exploitable without authentication; may allow control of the product or its process. |
| High | 7.0 to 8.9 | Significant impact on confidentiality, integrity, or availability; may need some access or user action. |
| Medium | 4.0 to 6.9 | Limited impact, or requires local access, unusual configuration, or user interaction. |
| Low | 0.1 to 3.9 | Minimal direct impact; typically hardening or defence in depth. |
The CVSS score is a guide. Your own risk depends on how the product is deployed, for example whether an instrument or mixer is reachable from a network other than the one it was installed on. Each advisory says what conditions are needed to exploit the vulnerability so you can judge that.
Products no longer supported
Where a vulnerability affects a product that has passed the end of its security support period, Alicat may publish an advisory describing the vulnerability and any available mitigation without providing a fix. The advisory will say so. Support end dates are shown on each product page and in the documentation supplied with the product.
Availability of this page
Advisories remain available on this page for at least ten years after publication or for the support period of the affected product, whichever is longer. Advisory references do not change once published.
Legal notices
Advisories describe the information available to Alicat at the time of publication and may be updated as more becomes known. They are provided to help users protect their systems and are not a warranty. Nothing in an advisory changes the terms of sale, license agreements, or warranties that apply to Alicat products.
Version 1.2, published September 11, 2026.
Alicat global offices
- US office and service center: +1 888-290-6060
- Email: [email protected]
- Website: alicat.com
- Address:
7641 N. Business Park Drive
Tucson, AZ 85743 USA
- China office and service center: +86 21-6151-9020
- Office email: [email protected]
- Service center email: [email protected]
- Website: alicat.com.cn
- Address:
3rd Floor, Building 18
FAMILY Science and Technology Innovation Park
No. 155 Yuanke Road
Minhang District
Shanghai, PRC 201109
- Europe office and service center: +31 262-031-651
- Email: [email protected]
- Website: alicat.com
- Address:
Geograaf 24
6921 EW
Duiven, The Netherlands
- Thane office and service center: +91 22460-81434
- Surat office and service center: +91 79902-58717
- Email Inquiries: [email protected]
- Website: alicat.com
- Address:
Alicat Scientific India Pvt. Ltd.
101, Hamilton A Bldg,
Near Hiranandani Hospital, Hiranandani Estate, Patli Pada, Ghodbunder Road,
Thane West-400607
Maharashtra, India
GST No.: 27AAWCA5866D1Z6
Surat Service Center
322-323 Laxmi Enclave 2, Laxmi Circle,
opposite Gajera School, Rajanand Society, Ram Nagar Society,
Katargam, Surat – 395004
Gujarat, India