A deserialization of untrusted data vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could lead to a remote code execution.
https://www.securityweek.com/cisa-warns-of-exploited-delmia-factory-software-vulnerabilities/
https://thehackernews.com/2025/10/active-exploits-hit-dassault-and-xwiki.html
https://www.databreachtoday.com/delmia-apriso-systems-under-attack-a-29871
https://www.securityweek.com/delmia-factory-software-vulnerability-exploited-in-attacks/
https://thehackernews.com/2025/09/critical-cve-2025-5086-in-delmia-apriso.html