Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2635▼ 214 respecto a la semana anterior
Críticas / altas1385▲ 153 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 473 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (7.7) | 0.44% | — | PTC Windchill PdmlinkAIPTC FlexplmAI | 20/8/2026 | 9/9/2026 | A Server-Side Request Forgery (SSRF) vulnerability has been reported in PTC Windchill PDMLink and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data. | |
| Aplazada | Crítica (9.2) | 0.56% | — | PTC WindchillAIPTC FlexplmAI | 20/8/2026 | 9/9/2026 | A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data. | |
| Aplazada | Crítica (9.3) | 0.43% | — | PTC Windchill Risk AND ReliabilityAI | 20/8/2026 | 9/9/2026 | A critical bypass access control vulnerability has been reported in PTC Windchill Risk and Reliability (WRR) Enterprise Edition. | |
| Analizada | Crítica (9.3) | 46% | ⚠ Explotación activa | PTC FlexplmPTC Windchill Pdmlink | 18/6/2026 | 1/8/2026 | — | |
| Pendiente de análisis | Crítica (9.3) | 0.76% | — | PTC WindchillAIPTC FlexplmAI | 23/3/2026 | 17/6/2026 | A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data. This issue affects Windchill PDMLink: 11.0 M030, 11.1 M020, 11.2.1.0, 12.0.2.0, 12.1.2.0, 13.0.2.0, 13.1.0.0, 13.1.1.0, 13.1.2.0,… | |
| Modificada | Media (5.3) | 0.92% | — | IBM Rational Lifecycle Integration Adapter FOR WindchillBender Cc612 FirmwareBender Cc613 FirmwareBender Icc15xx Firmware+1 | 27/4/2022 | 17/6/2026 | In Bender/ebee Charge Controllers in multiple versions a long URL could lead to webserver crash. The URL is used as input of an sprintf to a stack variable. | |
| Modificada | Media (4.3) | 0.95% | — | IBM Rational Lifecycle Integration Adapter FOR Windchill | 12/12/2014 | 17/6/2026 | Session fixation vulnerability in IBM Rational Lifecycle Integration Adapter for Windchill 1.x before 1.0.1 allows remote attackers to hijack web sessions via unspecified vectors. |