A specifically crafted packet sent by an attacker to EIPStackGroup OpENer EtherNet/IP commits and versions prior to Feb 10, 2021 may allow the attacker to read arbitrary data.
Credits
Tal Keren and Sharon Brizinov of Claroty reported these vulnerabilities to CISA.