Siemens Teamcenter Reflected XSS Vulnerability CVE-2026-58113
Siemens has identified a reflected cross-site scripting (XSS) vulnerability in the authentication redirect flow of Siemens Teamcenter. The flaw, tracked as CVE-2026-58113 with a CVSS score of 6.1 (MEDIUM), affects multiple supported versions of the product. An unauthenticated remote attacker can craft a malicious URL containing malicious JavaScript. If an authenticated user clicks this URL, the script executes in their browser, potentially allowing the attacker to read sensitive data or perform actions within the victim's Teamcenter session. Siemens has released updated versions for all affected product lines and strongly recommends applying the latest patches.














_Luis_Moreira_Alamy.jpg?width=720&quality=80&disable=upscale)


