The application discloses all used components, versions and license information to unauthenticated actors, giving attackers the opportunity to target known security vulnerabilities of used components.
https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0002.pdf
https://www.sick.com/.well-known/csaf/white/2026/sca-2026-0002.json
https://www.first.org/cvss/calculator/3.1
https://www.cisa.gov/resources-tools/resources/ics-recommended-practices