CVE-2026-11756: Deserialization of Untrusted Data vulnerability affecting Station Launcher App in 3DEXPERIENCE platform from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2026x
Published Jul 28, 2026
·Updated
A Deserialization of Untrusted Data vulnerability affecting Station Launcher App in 3DEXPERIENCE platform from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2026x could lead to an unauthenticated remote code execution.
Affected Software
1 affected component
3DEXPERIENCE platform / Station Launcher App>=3DEXPERIENCE R2023x<=3DEXPERIENCE R2026x
Event History
Jul 28, 2026
CVE Published
via MITRE·07:35 AM
Data Sourced
via MITRE·07:35 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-11756?
CVE-2026-11756 has a critical severity rating of 10.
2
What type of vulnerability is CVE-2026-11756?
CVE-2026-11756 is a Deserialization of Untrusted Data vulnerability.
3
What software is affected by CVE-2026-11756?
CVE-2026-11756 affects the Station Launcher App in the 3DEXPERIENCE platform.
4
What could an attacker achieve by exploiting CVE-2026-11756?
Exploiting CVE-2026-11756 could lead to unauthenticated remote code execution.
5
How can I mitigate the risks associated with CVE-2026-11756?
To mitigate the risks of CVE-2026-11756, it is recommended to update to a patched version of the 3DEXPERIENCE platform.