CVE-2023-29168: PTC Vuforia Studio

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

The local Vuforia web application does not support HTTPS, and federated credentials are passed via basic authentication.

Affected products

  • PTC Vuforia Studio: before 9.9 (fixed in 9.9)

Published 2023-06-07. Last modified 2026-06-17.