CVE-2023-45796: Pilz Pasvisu

High severity, CVSS 8.1. EPSS: 0.6% chance of exploitation in the next 30 days.

A stored cross-site scripting vulnerability in the Runtime component of Pilz PASvisu before 1.14.1 and PMI v8xx up to and including 2.0.33992 allows a low-privileged remote unauthenticated attacker to manipulate process data with potential impact on integrity and/or availability.

Affected products

  • Pilz Pasvisu: from 0.0.0, before 1.14.1 (fixed in 1.14.1)
  • Pilz Pmi v8xx: from 0.0.0, up to and including 2.0.33992

Published 2026-06-22. Last modified 2026-09-26.