CVE-2024-6379: 3ds 3dexperience
Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.
A reflected Cross-site Scripting (XSS) vulnerability affecting 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
Affected products
- 3ds 3dexperience: from r2022x, up to and including r2024x
Published 2024-08-20. Last modified 2026-06-17.