CVE-2025-2595: Codesys Visualization
Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.
An unauthenticated remote attacker can bypass the user management in CODESYS Visualization and read visualization template files or static elements by means of forced browsing.
Affected products
- Codesys Codesys Visualization: from 0.0.0.0, before 4.8.0.0 (fixed in 4.8.0.0)
Published 2025-04-23. Last modified 2026-06-17.