← Back to Feed
Siemens Parasolid
CVE-2026-64629
August 13, 2026 · CISA (US-CERT) · Severity: CRITICAL
Siemens Parasolid versions V38.0 before 38.0.235 and V38.1 before 38.1.230 contain an out-of-bounds read vulnerability (CVE-2026-64629) triggered by malicious X_T files. Successful exploitation could allow arbitrary code execution or application crash. Siemens has released updated versions; users should apply the patches promptly.
Key Takeaways
- Out-of-bounds read vulnerability in Parasolid when parsing specially crafted X_T files.
- Exploitation can lead to application crash or arbitrary code execution in current process.
- Update to Parasolid V38.0.235 or V38.1.230 to mitigate the risk.