CVE-2025-66595
Awaiting Analysis Awaiting Analysis - Queue
Cross-Site Request Forgery in Yokogawa FAST/TOOLS R9-R

Publication date: 2026-02-09

Last updated on: 2026-03-06

Assigner: YokogawaGroup

Description
A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product is vulnerable to Cross-Site Request Forgery (CSRF). When a user accesses a link crafted by an attacker, the user’s account could be compromised. The affected products and versions are as follows: FAST/TOOLS (Packages: RVSVRN, UNSVRN, HMIWEB, FTEES, HMIMOB) R9.01 to R10.04
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-02-09
Last Modified
2026-03-06
Generated
2026-06-16
AI Q&A
2026-02-09
EPSS Evaluated
2026-06-14
NVD
EUVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
yokogawa fast/tools From r9.01 (inc) to r10.04 (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-352 The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability is a Cross-Site Request Forgery (CSRF) issue found in FAST/TOOLS software provided by Yokogawa Electric Corporation. It allows an attacker to craft a malicious link that, when accessed by a user, could compromise the user's account.

Impact Analysis

If exploited, this vulnerability could lead to the compromise of a user's account in the FAST/TOOLS system. This means unauthorized actions could be performed on behalf of the user without their consent, potentially leading to unauthorized access or control within the affected system.

Compliance Impact

I don't know

Detection Guidance

I don't know

Mitigation Strategies

I don't know

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-66595. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart