Vulnerability index

Browse CVEs

362 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.5 CVE-2026-17550 A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can lev… Advance Steel No fix yet Fix from $1,6002026-07-29 HIGH 7.8 CVE-2026-16463 A maliciously crafted DXF file, when parsed through Autodesk AutoCAD, can force a Heap-Based Overflow vulnerability. A malicious actor can leverage t… Advance Steel 2026.1.2+ Fix from $1,9502026-07-29 HIGH 7.1 CVE-2026-16465 A maliciously crafted DWG or DXF file, when parsed through Autodesk AutoCAD, can force an Out-of-Bounds Read vulnerability. A malicious actor can lev… Advance Steel 2026.1.2+ Fix from $1,9502026-07-29 CRITICAL 9.6 CVE-2026-10789 A maliciously crafted webpage, when visited by a user with Autodesk Fusion Desktop running and the MCP extension enabled, can trigger a vulnerability… Fusion 2703.1.20+ Fix from $2,3002026-06-22 MEDIUM 5.5 CVE-2026-1288 A maliciously crafted RFA file, when converted to FormIt via “Convert RFA to FormIt” in Autodesk Revit, can force a NULL Pointer Dereference vulnerab… Revit 2024.3.5 / 2025.4.5+ Fix from $1,6002026-06-17 HIGH 7.8 CVE-2026-7454 A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage thi… 3ds Max Mitigation only Fix from $1,9502026-05-26 MEDIUM 5.5 CVE-2026-7453 A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can cause a Stack Exhaustion vulnerability, leading to a denial-of-service cond… 3ds Max Mitigation only Fix from $1,6002026-05-26 HIGH 7.8 CVE-2026-7451 A maliciously crafted TIF file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage … 3ds Max Mitigation only Fix from $1,9502026-05-26 HIGH 7.8 CVE-2026-7452 A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage thi… 3ds Max Mitigation only Fix from $1,9502026-05-26 MEDIUM 5.5 CVE-2026-7450 A maliciously crafted PAR file, when parsed through Autodesk 3ds Max, can force a NULL Pointer Dereference vulnerability. Successful exploitation may… 3ds Max Mitigation only Fix from $1,6002026-05-26 HIGH 7.1 CVE-2026-4344 A maliciously crafted HTML payload in a component name, when displayed during the delete confirmation dialog and clicked by a user, can trigger a Sto… Fusion 2702.1.47+ Fix from $1,9502026-04-14 HIGH 7.1 CVE-2026-4345 A maliciously crafted HTML payload, stored in a design name and exported to CSV, can trigger a Stored Cross-site Scripting (XSS) vulnerability in the… Fusion 2702.1.47+ Fix from $1,9502026-04-14 HIGH 7.1 CVE-2026-4369 A maliciously crafted HTML payload in an assembly variant name, when displayed during the delete confirmation dialog and clicked by a user, can trigg… Fusion 2702.1.47+ Fix from $1,9502026-04-14 HIGH 7.8 CVE-2026-0874 A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor … Shared Components 2026.6+ Fix from $1,9502026-02-18 HIGH 7.8 CVE-2026-0875 A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor ma… Shared Components 2026.6+ Fix from $1,9502026-02-18 HIGH 7.8 CVE-2026-0536 A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can cause a Stack-Based Buffer Overflow vulnerability. A malicious actor can le… 3ds Max 2026.3.2+ Fix from $1,9502026-02-04 HIGH 7.8 CVE-2026-0662 A maliciously crafted project directory, when opening a max file in Autodesk 3ds Max, could lead to execution of arbitrary code in the context of the… 3ds Max 2026.3.2+ Fix from $1,9502026-02-04 HIGH 8.4 CVE-2026-0537 A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage thi… 3ds Max 2026.3.2+ Fix from $1,9502026-02-04 HIGH 8.4 CVE-2026-0538 A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage … 3ds Max 2026.3.2+ Fix from $1,9502026-02-04 HIGH 8.4 CVE-2026-0660 A maliciously crafted GIF file, when parsed through Autodesk 3ds Max, can cause a Stack-Based Buffer Overflow vulnerability. A malicious actor can le… 3ds Max 2026.3.2+ Fix from $1,9502026-02-04 HIGH 8.4 CVE-2026-0661 A maliciously crafted RGB file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage thi… 3ds Max 2026.3.2+ Fix from $1,9502026-02-04 HIGH 8.1 CVE-2026-0535 A maliciously crafted HTML payload, stored in a component’s description and clicked by a user, can trigger a Stored Cross-site Scripting (XSS) vulner… Fusion 2606.1.21+ Fix from $1,9502026-01-22 HIGH 8.1 CVE-2026-0534 A maliciously crafted HTML payload, stored in a part’s attribute and clicked by a user, can trigger a Stored Cross-site Scripting (XSS) vulnerability… Fusion 2606.1.21+ Fix from $1,9502026-01-22 HIGH 8.1 CVE-2026-0533 A maliciously crafted HTML payload in a design name, when displayed during the delete confirmation dialog and clicked by a user, can trigger a Stored… Fusion 2606.1.21+ Fix from $1,9502026-01-22 HIGH 7.8 CVE-2025-9453 A maliciously crafted PRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerability. A malicious actor can l… Shared Components 2026.5+ Fix from $1,9502025-12-16 HIGH 7.8 CVE-2025-9454 A maliciously crafted PRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerability. A malicious actor can l… Shared Components 2026.5+ Fix from $1,9502025-12-16 HIGH 7.8 CVE-2025-9455 A maliciously crafted CATPRODUCT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerability. A malicious acto… Shared Components 2026.5+ Fix from $1,9502025-12-16 HIGH 7.8 CVE-2025-9456 A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability. A malicious actor can … Shared Components 2026.5+ Fix from $1,9502025-12-16 HIGH 7.8 CVE-2025-9457 A maliciously crafted PRT file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability. A malicious actor can lev… Shared Components 2026.5+ Fix from $1,9502025-12-16 HIGH 7.8 CVE-2025-9459 A maliciously crafted SLDPRT file, when parsed through certain Autodesk products, can force an Out-of-Bounds Read vulnerability. A malicious actor ca… Shared Components 2026.5+ Fix from $1,9502025-12-16