CVE-2026-9695: Dassault Systèmes DELMIA Apriso

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

An Improper Authentication vulnerability affecting DELMIA Apriso from Release 2020 through Release 2026 could allow an attacker to gain privileged access to the server.

Affected products

  • Dassault Systèmes DELMIA Apriso: from 2020 Golden, up to and including 2020 SP4; from 2021 Golden, up to and including 2021 SP3; from 2022 Golden, up to and including 2022 SP4; from 2023 Golden, up to and including 2023 SP3; from 2024 Golden, up to and including 2024 SP2; from 2025 Golden, up to and including 2025 SP1; …

Published 2026-07-08. Last modified 2026-07-08.