CVE-2025-2595

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Apr 23, 2025
CWE ID 862

Summary

CVE-2025-2595 is a newly identified vulnerability affecting CODESYS Visualization. This issue enables unauthenticated attackers to bypass user management and access visualization template files or static elements through forced browsing. This bypass can potentially lead to the exposure of sensitive information. The vulnerability poses a significant risk to organizations using CODESYS Visualization, and a patch or mitigation strategy should be implemented as soon as possible. Attackers do not require any credentials to exploit this issue, making it particularly dangerous.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share