CVE-2025-66595
MEDIUMYokogawa FAST/TOOLS R9.01-R10.04 - Cross-Site Request Forgery
Title source: llmDescription
A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product is vulnerable to Cross-Site Request Forgery (CSRF). When a user accesses a link crafted by an attacker, the user’s account could be compromised. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04
References (1)
Core 1
Core References
Scores
CVSS v3
5.4
EPSS
0.0009
EPSS Percentile
0.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-352
Status
published
Products (1)
yokogawa/fast\/tools
r9.01 - r10.04
Published
Feb 09, 2026
Tracked Since
Feb 18, 2026