No Magic Teamwork Cloud and CATIA Magic Collaboration Studio Deserialization Vulnerability Leading to Remote Code Execution

Vulnerability

A deserialization vulnerability allowing unauthenticated remote code execution has been identified in Teamwork Cloud (No Magic Releases 2022x to 2026x) and Magic Collaboration Studio (CATIA Magic Releases 2022x to 2026x).

Impact

Exploitation of this vulnerability could result in unauthorized remote code execution on the server where the affected application is running.

Remediation

Users can refer to the 3DS Support Knowledge Base for remediation information.

Added: Jun 1, 2026, 9:18 AM
Updated: Jun 1, 2026, 9:18 AM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
7.5
exploitability
4.7
remediation
0.0
relevance
10.0
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.