CVE-2026-3476

A Code Injection vulnerability affecting SOLIDWORKS Desktop from Release 2025 through Release 2026 could allow an attacker to execute arbitrary code on the user's machine while opening a specially crafted file.
Configurations

No configuration.

History

16 Mar 2026, 16:16

Type Values Removed Values Added
References
  • {'url': 'https://www.3ds.com/trust-center/security/security-advisories/CVE-2026-3476', 'source': '3DS.Information-Security@3ds.com'}
  • () https://www.3ds.com/trust-center/security/security-advisories/cve-2026-3476 -
Summary (en) A Code Injection vulnerability affecting in SOLIDWORKS Desktop from Release 2025 through Release 2026 could allow an attacker to execute arbitrary code on the user's machine while opening a specially crafted file. (en) A Code Injection vulnerability affecting SOLIDWORKS Desktop from Release 2025 through Release 2026 could allow an attacker to execute arbitrary code on the user's machine while opening a specially crafted file.

16 Mar 2026, 14:19

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-16 14:19

Updated : 2026-03-16 16:16


NVD link : CVE-2026-3476

Mitre link : CVE-2026-3476

CVE.ORG link : CVE-2026-3476


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')