Summary
A critical OS command injection vulnerability (CVE-2026-8153, CVSS 9.8) has been disclosed in Universal Robots’ PolyScope 5 operating system — the software that powers and controls the Danish company’s collaborative industrial robots (cobots). The flaw, found in the Dashboard Server interface, allows an unauthenticated attacker with network access to execute arbitrary commands on the robot’s underlying operating system.
Universal Robots has patched the vulnerability in PolyScope 5.25.1. The issue stems from the Dashboard Server accepting user-controlled input and passing it to the OS without proper sanitization. While the vendor notes that exploitation requires the Dashboard Server to be enabled and its port to be network-reachable — and that robots are not designed for direct internet access — the reality on factory floors is often different.
Security researcher Vera Mens of Claroty, who discovered the flaw, warned that many deployments use flat, unsegmented networks where gaining an initial foothold “may not be difficult.” The control box is essentially a general-purpose Linux computer, and successful exploitation could escalate from compromising a single cobot to taking over an entire fleet and connected peripherals.
Source
SecurityWeek | CISA Advisory | Universal Robots Advisory
Commentary
A CVSS 9.8 on an industrial robot controller is about as serious as OT vulnerabilities get. Universal Robots is one of the world’s largest cobot manufacturers, and their machines work alongside humans on production lines. The physical safety implications of a compromised cobot — one that could be reprogrammed to move unexpectedly — go well beyond data theft.
The researcher’s point about flat OT networks is critical. “Not designed for internet access” is technically true but practically irrelevant when factory networks routinely lack segmentation. If an attacker gets a foothold anywhere on the network — via phishing, a compromised workstation, or any other vector — they’re one hop away from root on the robot fleet. Patch immediately, and if you can’t patch yet, segment those cobots off the rest of the network.
