CVE-2026-84154

A Code Injection vulnerability affecting GEOVIA Geospatial Data Manager from Release 3DEXPERIENCE R2024x through Release 3DEXPERIENCE R2026x could allow an attacker to execute arbitrary code on the server.

  • Published Sep 29, 2026
  • CVSS 9.9 critical
  • 0.4% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-84154 at the National Vulnerability Database