In multiple CODESYS products, a low privileged remote attacker may craft a request that cause a read access to an uninitialized pointer, resulting in a denial-of-service. User interaction is not required.
https://www.cisa.gov/news-events/ics-advisories/icsa-26-076-01