Known Vulnerabilities for Altium Enterprise Server by Altium
Listed below are 10 of the newest known vulnerabilities associated with "Altium Enterprise Server" by "Altium".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-11431 json | A path traversal vulnerability exists in the Projects Service download endpoint shared by Altium Enterprise Server and Altium... | Not Provided | 2026-06-05 | 2026-06-08 |
| CVE-2026-11429 json | Two endpoints in the Vault Service ScriptsController, shared by Altium Enterprise Server and Altium 365, accept file uploads ... | Not Provided | 2026-06-05 | 2026-06-09 |
| CVE-2026-11424 json | A server-side request forgery (SSRF) vulnerability exists in a GraphQL service component shared by Altium Enterprise Server a... | Not Provided | 2026-06-05 | 2026-06-08 |
| CVE-2026-11423 json | A path traversal vulnerability exists in the Altium Enterprise Server Collaboration Service due to improper handling of user-... | Not Provided | 2026-06-05 | 2026-06-08 |
| CVE-2026-11420 json | Two path traversal vulnerabilities in the Network Installation Service (NIS) of Altium Enterprise Server allow an unauthentic... | Not Provided | 2026-06-05 | 2026-06-05 |
| CVE-2026-11419 json | A path traversal vulnerability exists in the Altium Enterprise Server Vault Service UploadController due to improper validati... | Not Provided | 2026-06-05 | 2026-06-05 |
| CVE-2026-11414 json | A hard-coded cryptographic key is used by Altium Enterprise Server to sign file download URLs in the Vault service. Because t... | Not Provided | 2026-06-05 | 2026-06-09 |
| CVE-2026-9152 json | A missing authentication vulnerability exists in the Altium 365 SearchService. A legacy SOAP endpoint exposes search index op... | Not Provided | 2026-05-21 | 2026-05-21 |
| CVE-2026-9129 json | A path traversal vulnerability exists in the Altium Enterprise Server Viewer StorageController due to improper handling of fi... | Not Provided | 2026-05-20 | 2026-05-20 |
| CVE-2026-9102 json | A path traversal vulnerability exists in the Altium Enterprise Server ComparisonService due to missing filename sanitization ... | Not Provided | 2026-05-20 | 2026-05-20 |