PatchSiren cyber security CVE debrief
CVE-2025-66595 Yokogawa CVE debrief
CVE-2025-66595 affects Yokogawa FAST/TOOLS and was publicly republished by CISA on 2026-02-10 as ICSA-26-041-01. The advisory says the product is vulnerable to cross-site request forgery (CSRF) and that a crafted link could compromise a user's account. The supplied CVSS vector rates the issue 5.3/Medium, and the vendor remediation path is to move to R10.04, apply patch software CS_e12787, then apply R10.04 SP3.
- Vendor
- Yokogawa
- Product
- FAST/TOOLS
- CVSS
- MEDIUM 5.3
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-02-10
- Original CVE updated
- 2026-02-10
- Advisory published
- 2026-02-10
- Advisory updated
- 2026-02-10
Who should care
Organizations running Yokogawa FAST/TOOLS, especially OT/ICS teams, system administrators, patch managers, and any environment where users access the product through a browser or web session.
Technical summary
This is a CSRF weakness, mapped in the advisory references to CWE-352. In practical terms, an attacker may induce an authenticated user to submit unintended actions through a crafted link or similar request flow, creating account-compromise risk. The supplied advisory text emphasizes crafted-link delivery, while the supplied CVSS vector is AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N.
Defensive priority
Medium priority overall, with higher urgency if FAST/TOOLS is exposed to broader user access, administrative workflows, or externally reachable interfaces. Apply vendor remediation promptly because the issue can affect account integrity.
Recommended defensive actions
- Update Yokogawa FAST/TOOLS to revision R10.04.
- Apply patch software CS_e12787 as directed by the vendor.
- After the patch is applied, apply R10.04 SP3.
- Review which users can reach FAST/TOOLS web interfaces and limit access to trusted administrative networks where possible.
- Follow CISA ICS recommended practices and Yokogawa's broader security program guidance, including patch management, hardening, zoning, firewalls, and whitelisting.
- Validate affected installations and change-control steps against the CISA advisory and vendor instructions before deployment.
Evidence notes
Grounded in the supplied CISA CSAF source item for ICSA-26-041-01 and its linked official references. The source metadata identifies Yokogawa FAST/TOOLS, describes a CSRF issue, and lists the vendor remediation sequence R10.04 -> CS_e12787 -> R10.04 SP3. The supplied references also include CWE-352, the CVE record, CISA advisory page, and CISA ICS guidance resources. No KEV listing or ransomware linkage is present in the supplied corpus.
Sources and references
Verified primary and authoritative sources
-
CVE-2025-66595 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2025-66595
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2025-66595 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2025-66595
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source item URL
Unverified legacy reference
URL: https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/OT/white/2026/icsa-26-041-01.json
cisa_csaf
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/news-events/ics-advisories/icsa-26-041-01
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/uscert/ics/alerts/ICS-ALERT-10-301-01
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/resources-tools/resources/ics-recommended-practices
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/sites/default/files/publications/Cybersecurity_Best_Practices_for_Industrial_Control_Systems.pdf
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/topics/industrial-control-systems
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/uscert/sites/default/files/publications/emailscams0905.pdf
Reference
-
Source reference
Unverified legacy reference
URL: https://www.cisa.gov/uscert/ncas/tips/ST04-014
Reference
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.