What is CVE-2026-11756?
CVE-2026-11756 is a Deserialization of Untrusted Data vulnerability in the Station Launcher App of the 3DEXPERIENCE platform, affecting releases from R2023x through R2026x. This flaw could allow unauthenticated remote code execution. Affected users should immediately apply the relevant security patches.
Azərbaycanca: CVE-2026-11756, 3DEXPERIENCE platformasının Station Launcher App komponentində aşkarlanmış "Deserialization of Untrusted Data" zəifliyidir. Bu boşluq R2023x-dən R2026x-ə qədər olan buraxılışlara təsir edir və autentifikasiya olunmadan uzaqdan kod icrasına (unauthenticated remote code execution) imkan verir. Platforma istifadəçiləri dərhal təhlükəsizlik yeniləmələrini tətbiq etməlidirlər.
Related CVEs
link basis: same weakness class CWE-502
FAQ2
Is authentication required to exploit CVE-2026-11756?
No, this flaw could allow unauthenticated remote code execution.
Which versions of the 3DEXPERIENCE platform are affected by CVE-2026-11756?
The vulnerability affects releases from R2023x through R2026x of the 3DEXPERIENCE platform.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.