PatchSiren

Dassault Systèmes CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

Known exploited Dassault Systèmes CVE published 2025-09-11

CVE-2025-5086

CVE-2025-5086 is a Dassault Systèmes DELMIA Apriso deserialization of untrusted data vulnerability that CISA has added to its Known Exploited Vulnerabilities catalog. That KEV listing means CISA considers the issue actively exploited or otherwise confirmed as exploited. The supplied corpus does not include affected versions, CVSS scoring, or patch build details, so defenders should use the vendor’s securi [truncated]