CVE-2026-59086: Siemens Simcenter Femap

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability has been identified in Simcenter Femap (All versions < V2606), Simcenter Nastran (All versions < V2606). The affected applications contain a stack overflow vulnerability while parsing specially strings as argument for one of the application binaries. This could allow an attacker to execute code in the context of the current process.

Affected products

  • Siemens Simcenter Femap: before V2606 (fixed in V2606)
  • Siemens Simcenter Nastran: before V2606 (fixed in V2606)

Published 2026-08-11. Last modified 2026-08-28.