CVE-2026-11756: Dassault Systèmes Station Launcher App In 3dexperience Platform
Critical severity, CVSS 10.0. EPSS: 0.8% chance of exploitation in the next 30 days.
A Deserialization of Untrusted Data vulnerability affecting Station Launcher App in 3DEXPERIENCE platform from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2026x could lead to an unauthenticated remote code execution.
Affected products
- Dassault Systèmes Station Launcher App In 3dexperience Platform: from 3DEXPERIENCE R2023x Golden, up to and including 3DEXPERIENCE R2023x.FP.CFA.2613; from 3DEXPERIENCE R2024x Golden, up to and including 3DEXPERIENCE R2024x.FP.CFA.2615; from 3DEXPERIENCE R2025x Golden, up to and including 3DEXPERIENCE R2025x.FP.CFA.2628; from 3DEXPERIENCE R2026x Golden, up to and including 3DEXPERIENCE R2026x.FP.CFA.2624
Published 2026-07-28. Last modified 2026-07-30.