CVE-2023-1996: 3ds 3dexperience

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

A reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x allows an attacker to execute arbitrary script code.

Affected products

  • 3ds 3dexperience: from r2018x, up to and including r2023x

Published 2023-05-19. Last modified 2026-06-17.