CVE-2026-77645
Critical Remote Code Execution (RCE) vulnerability reported in Windchill
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.
| CWE | CWE-20 CWE-502 |
| Vendor | ptc |
| Product | windchill pdmlink |
| Published | Aug 20, 2026 |
Stay Ahead of the Next One
Get instant alerts for ptc windchill pdmlink
Be the first to know when new unknown vulnerabilities affecting ptc windchill pdmlink are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
PTC / Windchill PDMLink
11.0 M030 11.1 M020 11.2.1.0 12.0.2.0 12.1.2.0 13.0.2.0 13.1.0.0 13.1.1.0 13.1.2.0 13.1.3.0
PTC / FlexPLM
11.0 M030 11.1 M020 11.2.1.0 12.0.0.0 12.0.2.0 12.0.3.0 12.1.2.0 12.1.3.0 13.0.2.0 13.0.3.0
References
Credits
๐ Arthur Aires (https://arthurair.es/) ๐ brenocss (LinkedIn: @brenocss) ๐ Bruno Milreu (LinkedIn: @bruno-milreu)