logo

Critical RCE Flaw in PTC Windchill and FlexPLM Puts Product Data at Risk

ID: 09a8e6f2-8d64-5416-9730-4ab170aca190

STIX ID: report--09a8e6f2-8d64-5416-9730-4ab170aca190

Feed Name: securityonline.info

Threat Score
85/100

Date Published: 2026-03-26

Date Updated: 2026-04-23

Author: Ddos

...
...

**PTC advisory — CVE-2026-4681 (CVSS 10):** a critical remote-code-execution vulnerability via deserialization affects Windchill and FlexPLM across many modern releases; PTC warns impacted versions (prior to 11.0 M030 and multiple CPS lines) and urges customers to audit environments and apply critical patches immediately to prevent full system compromise and data exfiltration.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.