A Stored Cross-site Scripting (XSS) vulnerability affecting Process Experience Studio in DELMIA Service Process Engineer from Release 3DEXPERIENCE R2024x through Release 3DEXPERIENCE R2026x could allow an attacker to execute arbitrary script code in user's browser session.
Metrics
Affected Vendors & Products
References
History
Wed, 03 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dassault
Dassault delmia Service Process Engineer |
|
| Vendors & Products |
Dassault
Dassault delmia Service Process Engineer |
Mon, 01 Jun 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 01 Jun 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Stored Cross-site Scripting (XSS) vulnerability affecting Process Experience Studio in DELMIA Service Process Engineer from Release 3DEXPERIENCE R2024x through Release 3DEXPERIENCE R2026x could allow an attacker to execute arbitrary script code in user's browser session. | |
| Title | Stored Cross-site Scripting (XSS) vulnerability affecting Process Experience Studio in DELMIA Service Process Engineer from Release 3DEXPERIENCE R2024x through Release 3DEXPERIENCE R2026x | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: 3DS
Published:
Updated: 2026-06-01T13:06:19.522Z
Reserved: 2026-05-19T15:19:39.513Z
Link: CVE-2026-9024
Updated: 2026-06-01T13:06:15.792Z
Status : Awaiting Analysis
Published: 2026-06-01T09:16:21.413
Modified: 2026-06-01T17:57:39.180
Link: CVE-2026-9024
No data.
OpenCVE Enrichment
Updated: 2026-06-02T20:15:16Z