CVE-2025-12956

Publication date

2025-12-08 08:38:45

Family

3DS

State

PUBLISHED

Description

A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2025x allows an attacker to execute arbitrary script code in users browser session.