SecAlerts
e

enovia

Security Risk Profile

61
/100
high

Security Risk Score

Comprehensive risk assessment based on 13 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from September 19, 2024 to present

13
Total CVEs
13
Critical+High
0
Exploited
13
Unpatched

Threat Assessment

Avg CVSS
8.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
13
Critical/High
Risk Level
61/100
high

Severity Distribution

Critical
0
High
13
Medium
0
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
1

Age Distribution

Common Weaknesses (CWE)

1
XSS
13

Most Affected Products

1. 3DS 3dexperience Enovia12
2. ENOVIA Collaborative Industry Innovator10
3. ENOVIA ENOVIA vpm1
4. ENOVIA Product Manager1
5. ENOVIA Change Manager1

Recent Vulnerabilities

See more →
CVE-2026-2101
CVSS 8.7high

Reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIAvpm Web Access from ENOVIAvpm Version 1 Release 16 through ENOVIAvpm Version 1 Release 19

Feb 16, 2026🔧 No Patch
CVE-2025-10554
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting Requirements in ENOVIA Product Manager from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2025x

Nov 24, 2025🔧 No Patch
CVE-2025-10557
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting Issue Management in ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2025x

Oct 13, 2025🔧 No Patch
CVE-2025-0832
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting Project Gantt in ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x

Mar 17, 2025🔧 No Patch
CVE-2025-0830
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting Meeting Management in ENOVIA Change Manager from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x

Mar 17, 2025🔧 No Patch
CVE-2025-0829
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting 3D Markup in ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x

Mar 17, 2025🔧 No Patch
CVE-2025-0600
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting Product Explorer in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x

Mar 17, 2025🔧 No Patch
CVE-2025-0596
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting Bookmark Editor in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x

Mar 17, 2025🔧 No Patch
CVE-2024-12092
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x

Dec 16, 2024🔧 No Patch
CVE-2024-12091
CVSS 8.7high

Stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x

Dec 16, 2024🔧 No Patch

Monitor enovia in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

enovia Security Vulnerabilities & Risk Score | 13 CVEs | SecAlerts - SecAlerts