Rockwell Fixes Redundancy Module Configuration Tool
Rockwell Automation has identified and patched two vulnerabilities in its Redundancy Module Configuration Tool, affecting versions 9.00.00 to 10.00.00. The flaws, CVE-2026-9633 and CVE-2026-9634, have a CVSS V3 base score of 7.3. The tool is primarily used in critical manufacturing sectors globally. Rockwell recommends upgrading to version 10.01.00 or following security best practices.
How this was made

The 30-second read
Why it matters
The disclosed vulnerabilities may cause short‑term concern among industrial customers, potentially weighing on Rockwell's stock until the patch is widely adopted.
Market read
Security vulnerability could modestly affect Rockwell Automation's share price and raise sector‑wide attention to software security in industrial automation.
What to watch
Future exploit development and long‑term reputational risk could affect customer confidence.
Background
Rockwell Automation announced that its Redundancy Module Configuration Tool versions 9.00.00 through 10.00.00 contain local privilege‑escalation vulnerabilities (CVE‑2026‑9633 and CVE‑2026‑9644) and issued version 10.01.00 to remediate the issues.
Ticker impact
Rockwell Automation disclosed critical security vulnerabilities in its Redundancy Module Configuration Tool and released a patch version 10.01.00.
Modest downside pressure on ROK price in the near term.
No known exploits yet, but the patch requirement may cause customer hesitation and reputational risk.
Market effects
Industrial automation sector may see heightened security scrutiny and potential compliance costs.
US markets could see modest pressure on Rockwell Automation shares.
Manufacturers worldwide using the tool may reassess security practices.
Counterpoint
Impact may be limited as patches are released quickly and no exploits are currently known.
Key entities
- CompanyRockwell Automation
Provider of industrial automation solutions and the subject of the vulnerability disclosure.



