๐Ÿ” CVE Alert

CVE-2026-12569

UNKNOWN 0.0 โš ๏ธ CISA KEV

Remote Code Execution (RCE) vulnerability in Windchill PDMlink

CVSS Score
0.0
EPSS Score
2.3%
EPSS Percentile
81th

A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill PDMlink and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.ย  * This advisory also applies to all CPS versions * The identified vulnerability also impacts Windchill and FlexPLM releases prior to 11.0 M030

CWE CWE-20 CWE-502
Vendor ptc
Product windchill pdmlink
Published Jun 18, 2026
Last Updated Aug 1, 2026
โš ๏ธ Actively Exploited โ€” Act Now

Get instant alerts for ptc windchill pdmlink

This vulnerability is actively exploited in the wild. Set up free real-time alerts so you're first to know about threats like CVE-2026-12569.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

PTC / Windchill PDMLink
0 โ‰ค 11.0 M030 11.1 M020 11.2.1.0 12.0.2.0 12.1.2.0 13.0.2.0 13.1.0.0 13.1.1.0 13.1.2.0 13.1.3.0
PTC / FlexPLM
0 โ‰ค 11.0 M030 11.1 M020 11.2.1.0 12.0.0.0 12.0.2.0 12.1.2.0 12.1.3.0 13.0.2.0 13.0.3.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
ptc.com: https://www.ptc.com/en/support/article/CS473270 cisa.gov: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-12569