CVE-2026-12569
Remote Code Execution (RCE) vulnerability in Windchill PDMlink
CVSS Score
0.0
EPSS Score
2.3%
EPSS Percentile
81th
A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill PDMlink and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.ย * This advisory also applies to all CPS versions * The identified vulnerability also impacts Windchill and FlexPLM releases prior to 11.0 M030
| CWE | CWE-20 CWE-502 |
| Vendor | ptc |
| Product | windchill pdmlink |
| Published | Jun 18, 2026 |
| Last Updated | Aug 1, 2026 |
โ ๏ธ Actively Exploited โ Act Now
Get instant alerts for ptc windchill pdmlink
This vulnerability is actively exploited in the wild. Set up free real-time alerts so you're first to know about threats like CVE-2026-12569.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
PTC / Windchill PDMLink
0 โค 11.0 M030 11.1 M020 11.2.1.0 12.0.2.0 12.1.2.0 13.0.2.0 13.1.0.0 13.1.1.0 13.1.2.0 13.1.3.0
PTC / FlexPLM
0 โค 11.0 M030 11.1 M020 11.2.1.0 12.0.0.0 12.0.2.0 12.1.2.0 12.1.3.0 13.0.2.0 13.0.3.0