VDE-2025-062: Several WAGO firmwares are impacted by various CODESYS vulnerabilities affecting the runtime, visualization, and OPC UA server. - CVEs: CVE-2025-1468, CVE-2025-0694, CVE-2025-2595 VDE-2025-060: Sauter modulo 6 devices have multiple vulnerabilities in the embedded firmware affecting the embedded web server and CASE Application Interface. - CVEs: CVE-2025-41720, CVE-2025-41721, CVE-2025-41722, CVE-2025-41723, CVE-2025-41724 VDE-2025-093: The PASvisu Runtime by Pilz is affected by a vulnerability in a third-party component payable by a malicious web request. - CVEs: CVE-2025-51495 VDE-2025-074: Phoenix Contact Security Advisory for CHARX SEC-3xxx charging controllers, where a vulnerability in the firmware has been discovered. - CVEs: CVE-2025-41699 VDE-2025-091: Murrelektronik IMPACT67 Pro imager transmits login credentials over unencrypted HTTP due to a missing web interface, making it vulnerable to information distortion. - CVEs: CVE-2025-41718 VDE-2025-072: Phoenix Contact discovered multiple vulnerabilities in the firmware of QUINT4-UPS EIP devices that can be exploited by an unauthenticated attacker for Denial of Service attacks and login move collection. - CVEs: CVE-2025-41703, CVE-2025-41704, CVE-2025-41705, CVE-2025-41706, CVE-2025-41707 VDE-2025-087: WAGO's Solution Builder and Device Sphere are vulnerable to potential information exposure due to a missing authentication check. - CVEs: CVE-2025-41715, CVE-2025-41716 VDE-2025-083: An analysis in the Ethernet switch circuit has its vulnerability due to aPullUp Rassf sector at the reset, leading to premature activation and unprotected operation.