VYPR

Visualization

by Codesys

CVEs (3)

  • CVE-2026-0393MedMay 21, 2026
    risk 0.42cvss 6.5epss 0.00

    The affected product may expose credentials remotely between low privileged visualization users during concurrent login operations due to insufficient isolation of authentication data. The vulnerability affects only login operations within an active visualization session.

  • CVE-2022-1989MedAug 23, 2022
    risk 0.35cvss 5.3epss 0.01

    All CODESYS Visualization versions before V4.2.0.0 generate a login dialog vulnerable to information exposure allowing a remote, unauthenticated attacker to enumerate valid users.

  • CVE-2025-2595MedApr 23, 2025
    risk 0.34cvss 5.3epss 0.00

    An unauthenticated remote attacker can bypass the user management in CODESYS Visualization and read visualization template files or static elements by means of forced browsing.