CVE-2025-10558: 3ds 3dswymer

Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.

A stored Cross-site Scripting (XSS) vulnerability affecting 3DSearch in 3DSwymer on Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary script code in user's browser session.

Affected products

  • 3ds 3dswymer: version r2025x only

Published 2025-10-13. Last modified 2026-10-08.