Dassault Systèmes Security Advisories

Providing information on important security vulnerabilities that have been confirmed in our products.

Security advisories are based on published vulnerabilities coordinated with MITRE in accordance with MITRE CNA (CVE Numbering Authorities) policies and guidelines. Additional information on each advisory can be found in our Support Knowledge Base (KB) accessible in the dedicated CVE pages.

There are 108 results
CVE-2023-5597

Stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2024x

Security Advisories

CVE-2024-1848

Multiple vulnerabilities exist in file reading procedure in SOLIDWORKS Desktop on Release SOLIDWORKS 2024

Security Advisories

CVE-2025-1883

Out-Of-Bounds Write vulnerability exists in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025

Security Advisories

CVE-2023-2763

Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023

Security Advisories

CVE-2023-1996

Reflected Cross-site Scripting (XSS) vulnerability affecting Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x

Security Advisories

CVE-2023-2139

Reflected Cross-site Scripting vulnerability affecting DELMIA Apriso Release 2017 through Release 2022

Security Advisories

CVE-2023-2140

Server-Side Request Forgery vulnerability affecting DELMIA Apriso Release 2017 through Release 2022

Security Advisories

CVE-2023-2141

Unsafe .NET object deserialization affecting DELMIA Apriso Release 2017 through Release 2022

Security Advisories

CVE-2023-5598

Stored Cross-site Scripting (XSS) vulnerabilities affecting 3DSwym in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2023x

Security Advisories

CVE-2023-3589

Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x

Security Advisories

CVE-2023-3588

Stored Cross-site Scripting (XSS) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x

Security Advisories

CVE-2023-1997

OS Command Injection vulnerability affecting SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x

Security Advisories