CVE-2017-12939: UNITY3D Unity Editor

Critical severity, CVSS 9.8. EPSS: 4.7% chance of exploitation in the next 30 days.

A Remote Code Execution vulnerability was identified in all Windows versions of Unity Editor, e.g., before 5.3.8p2, 5.4.x before 5.4.5p5, 5.5.x before 5.5.4p3, 5.6.x before 5.6.3p1, and 2017.x before 2017.1.0p4.

Affected products

  • UNITY3D Unity Editor: version 5.3.8 only; version 5.4.0 only; version 5.4.1 only; version 5.4.2 only; version 5.4.3 only; version 5.4.4 only; …

Published 2017-08-18. Last modified 2026-06-17.