SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-77645

CRITICAL · CVSS 9.2 EPSS 0.47% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A critical remote code execution vulnerability exists in PTC Windchill and PTC FlexPLM, allowing attackers to exploit deserialization of untrusted data. Successful exploitation could enable unauthorized remote access and control over affected systems. Organizations using these products should prioritize immediate patching and mitigation efforts to protect against potential attacks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-77645
Severity
CRITICAL
CVSS
9.2
EPSS
0.47%

Original NVD Description

A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.