<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>WildforTech Security Advisories — Dassault Systèmes</title><description>Actively exploited vulnerabilities affecting Dassault Systèmes products.</description><link>https://wildfortech.com</link><atom:link href="https://wildfortech.com/security/vendor/dassault-syst-mes.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2025-6204 — Dassault Systèmes DELMIA Apriso Code Injection Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-6204</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-6204</guid><description>DELMIA Apriso, an enterprise manufacturing operations management platform from Dassault Systèmes, contains a code injection flaw that lets an attacker execute arbitrary code on affected systems. Because this product is used to manage production and shop-floor operations, successful exploitation could disrupt manufacturing workflows, compromise sensitive operational data, or provide a foothold for deeper network intrusion. CISA has added this to its Known Exploited Vulnerabilities catalog, signaling active or high-risk exploitation concern.</description><pubDate>Tue, 28 Oct 2025 00:00:00 GMT</pubDate><category>Dassault Systèmes</category><category>DELMIA Apriso</category></item><item><title>CVE-2025-6205 — Dassault Systèmes DELMIA Apriso Missing Authorization Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-6205</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-6205</guid><description>DELMIA Apriso, Dassault Systèmes&apos; manufacturing operations management platform, contains a missing authorization flaw that lets attackers gain privileged access without proper credential checks. In practice, this means an unauthorized or low-privileged user could escalate their access within the application, potentially manipulating production data, workflows, or system configurations. Because DELMIA Apriso is used in industrial and manufacturing environments, unauthorized privileged access carries significant operational risk.</description><pubDate>Tue, 28 Oct 2025 00:00:00 GMT</pubDate><category>Dassault Systèmes</category><category>DELMIA Apriso</category></item><item><title>CVE-2025-5086 — Dassault Systèmes DELMIA Apriso Deserialization of Untrusted Data Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-5086</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-5086</guid><description>DELMIA Apriso, a manufacturing operations management platform from Dassault Systèmes, contains a deserialization vulnerability that allows remote code execution. Deserialization flaws are serious because an attacker can send crafted malicious data to the application, which then executes arbitrary code during processing — potentially giving the attacker full control of the affected system without requiring valid credentials. This type of vulnerability is especially dangerous in industrial and manufacturing environments where system availability is critical.</description><pubDate>Thu, 11 Sep 2025 00:00:00 GMT</pubDate><category>Dassault Systèmes</category><category>DELMIA Apriso</category></item></channel></rss>