CVE-2025-9976: Dassault Systèmes Station Launcher App In 3dexperience Platform
Critical severity, CVSS 9.0. EPSS: 0.9% chance of exploitation in the next 30 days.
An OS Command Injection vulnerability affecting Station Launcher App in 3DEXPERIENCE platform from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2025x could allow an attacker to execute arbitrary code on the user's machine.
Affected products
- Dassault Systèmes Station Launcher App In 3dexperience Platform: from 3DEXPERIENCE R2022x Golden, up to and including 3DEXPERIENCE R2022x.FP.CFA.2540; from 3DEXPERIENCE R2023x Golden, up to and including 3DEXPERIENCE R2023x.FP.CFA.2532; from 3DEXPERIENCE R2024x Golden, up to and including 3DEXPERIENCE R2024x.FP.CFA.2537; from 3DEXPERIENCE R2025x Golden, up to and including 3DEXPERIENCE R2025x.FP.CFA.2532
Published 2025-10-13. Last modified 2026-09-26.