๐Ÿ” CVE Alert

CVE-2026-77645

UNKNOWN 0.0

Critical Remote Code Execution (RCE) vulnerability reported in Windchill

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.

CWE CWE-20 CWE-502
Vendor ptc
Product windchill pdmlink
Published Aug 20, 2026
Stay Ahead of the Next One

Get instant alerts for ptc windchill pdmlink

Be the first to know when new unknown vulnerabilities affecting ptc windchill pdmlink are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

PTC / Windchill PDMLink
11.0 M030 11.1 M020 11.2.1.0 12.0.2.0 12.1.2.0 13.0.2.0 13.1.0.0 13.1.1.0 13.1.2.0 13.1.3.0
PTC / FlexPLM
11.0 M030 11.1 M020 11.2.1.0 12.0.0.0 12.0.2.0 12.0.3.0 12.1.2.0 12.1.3.0 13.0.2.0 13.0.3.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
ptc.com: https://www.ptc.com/en/support/article/CS474826

Credits

๐Ÿ” Arthur Aires (https://arthurair.es/) ๐Ÿ” brenocss (LinkedIn: @brenocss) ๐Ÿ” Bruno Milreu (LinkedIn: @bruno-milreu)