CVE-2025-0595
CVSS 3.1 Score 8.7 of 10 (high)
Details
Summary
CVE-2025-0595 is a stored Cross-site Scripting (XSS) vulnerability that affects the 3DDashboard component of 3DSwymer in versions 3DEXPERIENCE R2022x through R2024x from Dassault Systèmes. An attacker can exploit this vulnerability to inject and execute arbitrary script code in a user's browser session, potentially gaining unauthorized access to sensitive information or taking control of the user's account. This vulnerability poses a significant risk and requires immediate remediation by updating to a patched version or implementing other mitigation techniques to protect against XSS attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.