LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-9024

Published
CVSS8.7
Severityhigh
WeaknessCWE-79
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:N

Description

A Stored Cross-site Scripting (XSS) vulnerability affecting Process Experience Studio in DELMIA Service Process Engineer from Release 3DEXPERIENCE R2024x through Release 3DEXPERIENCE R2026x could allow an attacker to execute arbitrary script code in user's browser session.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-9024

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-9024.