CVE-2025-23411: Myscada Mypro

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

mySCADA myPRO Manager is vulnerable to cross-site request forgery (CSRF), which could allow an attacker to obtain sensitive information. An attacker would need to trick the victim in to visiting an attacker-controlled website.

Affected products

  • Myscada Mypro: before 1.4 (fixed in 1.4)

Published 2025-02-13. Last modified 2026-06-17.