Autodesk Security Vulnerabilities (CVEs)

Track 149 security vulnerabilities affecting Autodesk products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

2 Critical
145 High
2 Medium
🔔 Get Alerts for Autodesk
CVE-2024-37002 7.8

This vulnerability allows attackers to execute arbitrary code by tricking users into opening malicious MODEL files in affected Autodesk applications. ...

Jun 25, 2024
CVE-2024-23142 7.8

A use-after-free vulnerability in Autodesk applications allows remote code execution when processing malicious CAD files (CATPART, STP, MODEL). Attack...

Jun 25, 2024
CVE-2024-23144 7.8

This vulnerability allows attackers to execute arbitrary code on AutoCAD systems by tricking users into opening malicious CATPART files. It affects Au...

Jun 25, 2024
CVE-2024-23140 7.8

This vulnerability allows attackers to exploit out-of-bounds read conditions in Autodesk applications when processing malicious 3DM and MODEL files. A...

Jun 25, 2024
CVE-2023-29075 9.8

This vulnerability allows attackers to exploit a memory corruption flaw in Autodesk AutoCAD by tricking users into opening malicious PRT files. Succes...

Nov 23, 2023
CVE-2023-41139 7.8

A maliciously crafted STP file can trigger an untrusted pointer dereference vulnerability in Autodesk AutoCAD 2024 and 2023. This could allow an attac...

Nov 23, 2023
CVE-2023-29073 9.8

This vulnerability allows attackers to execute arbitrary code or read sensitive data by tricking users into opening malicious MODEL files in AutoCAD. ...

Nov 23, 2023
CVE-2023-29069 7.8

This vulnerability allows attackers to place malicious DLL files in non-default locations, which can then be loaded by affected Autodesk software with...

Nov 22, 2023
CVE-2023-25001 7.8

A use-after-free vulnerability in Autodesk Navisworks allows malicious SKP files to trigger memory corruption, potentially leading to arbitrary code e...

Jun 27, 2023
CVE-2023-25004 7.8

This vulnerability in Autodesk products allows attackers to execute arbitrary code by exploiting integer overflow in pskernel.dll. Users running affec...

Jun 27, 2023
CVE-2023-27908 7.8

This vulnerability allows privilege escalation through a DLL hijacking attack in Autodesk installers. An attacker could execute arbitrary code with el...

Jun 23, 2023
CVE-2023-25003 7.8

This vulnerability in Autodesk AutoCAD 2023 and Maya 2022 allows attackers to execute arbitrary code by exploiting out-of-bounds read/write vulnerabil...

Jun 23, 2023
CVE-2023-25005 7.8

This vulnerability in Autodesk InfraWorks allows attackers to craft malicious DLL files that cause the software to read beyond allocated memory bounda...

May 12, 2023
CVE-2023-25007 7.8

This vulnerability allows remote code execution through a malicious USD (Universal Scene Description) file. Attackers can craft a file that triggers a...

May 12, 2023
CVE-2023-25009 7.8

This vulnerability allows remote code execution through malicious USD files in Autodesk software. An attacker can craft a USD file that triggers an ou...

May 12, 2023
CVE-2023-27906 7.8

This vulnerability allows attackers to execute arbitrary code by tricking victims into opening malicious USD (Universal Scene Description) files. It a...

Apr 17, 2023
CVE-2023-27909 7.8

An out-of-bounds write vulnerability in Autodesk FBX SDK versions 2020 and earlier allows attackers to execute arbitrary code or disclose information ...

Apr 17, 2023
CVE-2023-27911 7.8

This vulnerability allows attackers to execute arbitrary code by tricking users into opening malicious FBX files. It affects systems using Autodesk FB...

Apr 17, 2023
CVE-2023-27914 7.8

A stack buffer overflow vulnerability in Autodesk AutoCAD 2023 allows attackers to execute arbitrary code or read sensitive data by tricking users int...

Apr 14, 2023
CVE-2023-29067 7.8

A memory corruption vulnerability in Autodesk AutoCAD 2023 allows attackers to execute arbitrary code by tricking users into opening malicious X_B fil...

Apr 14, 2023
CVE-2023-27912 7.8

This vulnerability in Autodesk AutoCAD 2023 allows attackers to exploit an out-of-bounds read when processing malicious X_B files. Successful exploita...

Apr 14, 2023
CVE-2022-27864 8.8

CVE-2022-27864 is a double free vulnerability in Autodesk Design Review that allows remote attackers to execute arbitrary code when users open malicio...

Jul 29, 2022
CVE-2022-27866 7.8

CVE-2022-27866 is an out-of-bounds read vulnerability in Autodesk Design Review's TIFF file parser. Attackers can craft malicious TIFF files that caus...

Jul 29, 2022
CVE-2022-33881 7.8

This vulnerability allows attackers to craft malicious PRT files that cause Autodesk AutoCAD 2023 to read beyond allocated memory boundaries. When com...

Jul 29, 2022
CVE-2022-27873 7.8

This vulnerability in Autodesk Fusion 360 allows attackers to force victims' devices to make arbitrary HTTP requests through malicious SVG files. Atta...

Jul 29, 2022
CVE-2022-27868 7.8

A use-after-free vulnerability in Autodesk AutoCAD 2023 allows attackers to execute arbitrary code by tricking users into opening malicious CAT files....

Jun 21, 2022
CVE-2022-27870 7.8

This vulnerability allows attackers to execute arbitrary code by tricking users into opening malicious TGA image files in AutoCAD 2023. The buffer ove...

Jun 21, 2022
CVE-2022-27872 7.8

This vulnerability in Autodesk Navisworks 2022 allows attackers to craft malicious PDF files that cause pointer dereference issues during parsing, pot...

Jun 21, 2022
CVE-2022-27531 7.8

This vulnerability allows a maliciously crafted TIF file to cause Autodesk 3ds Max to read beyond allocated memory boundaries. If exploited in conjunc...

Jun 16, 2022
CVE-2022-25788 7.8

This vulnerability in Autodesk AutoCAD 2022 allows an attacker to execute arbitrary code by tricking a user into opening a maliciously crafted JT file...

Apr 19, 2022
CVE-2022-27526 7.8

This vulnerability allows an attacker to execute arbitrary code by tricking a user into opening a malicious TGA image file in Autodesk Design Review. ...

Apr 18, 2022
CVE-2022-27530 7.8

A buffer overflow vulnerability in Autodesk AutoCAD allows attackers to execute arbitrary code by tricking users into opening malicious TIF or PICT fi...

Apr 18, 2022
CVE-2022-27523 7.1

A buffer over-read vulnerability in Autodesk TrueView 2022 allows attackers to expose sensitive information or cause application crashes by tricking u...

Apr 13, 2022
CVE-2022-25795 7.8

CVE-2022-25795 is a memory corruption vulnerability in Autodesk TrueView that allows remote code execution when processing malicious DWG files. Attack...

Apr 13, 2022
CVE-2022-27528 7.8

This vulnerability allows attackers to execute arbitrary code by tricking users into opening malicious DWFX or SKP files in Autodesk Navisworks 2022. ...

Apr 11, 2022
CVE-2022-25789 7.8

A use-after-free vulnerability in Autodesk AutoCAD allows malicious DWF, 3DS, and DWFX files to trigger memory corruption. Successful exploitation cou...

Apr 11, 2022
CVE-2022-25791 7.8

A memory corruption vulnerability in Autodesk AutoCAD and Navisworks allows attackers to execute arbitrary code by tricking users into opening malicio...

Apr 11, 2022
CVE-2022-25794 7.8

An out-of-bounds read vulnerability in Autodesk FBX Review version 1.5.2 and earlier allows attackers to execute arbitrary code or disclose informatio...

Apr 11, 2022
CVE-2021-40158 7.8

This vulnerability allows a malicious JT file to cause Autodesk Inventor and AutoCAD to read beyond allocated memory boundaries. When combined with ot...

Jan 25, 2022
CVE-2021-40167 7.8

This vulnerability allows memory corruption through specially crafted DWF or PCT files when opened in Autodesk Design Review. Attackers could potentia...

Jan 25, 2022
CVE-2021-40160 7.8

CVE-2021-40160 is an out-of-bounds read vulnerability in PDFTron PDF parsing libraries prior to version 9.0.7. Attackers can exploit this by crafting ...

Dec 23, 2021
CVE-2021-40155 7.8

This vulnerability allows arbitrary code execution through maliciously crafted DWG files in Autodesk Navisworks. Attackers can exploit an out-of-bound...

Sep 15, 2021
CVE-2021-27046 7.8

This CVE describes a memory corruption vulnerability in Autodesk Navisworks PDF file processing that could allow remote code execution. Attackers can ...

Sep 15, 2021
CVE-2021-27036 7.8

This is a buffer overflow vulnerability in Autodesk software that allows arbitrary code execution when processing malicious image files. Attackers can...

Jul 9, 2021
CVE-2021-27038 7.8

A Type Confusion vulnerability in Autodesk Design Review allows arbitrary code execution when processing malicious PDF files. This affects users of Au...

Jul 9, 2021
CVE-2021-27034 7.8

This heap-based buffer overflow vulnerability in Autodesk Design Review allows attackers to execute arbitrary code by tricking users into opening mali...

Jul 9, 2021
CVE-2021-27032 7.8

CVE-2021-27032 is a privilege escalation vulnerability in Autodesk Licensing Installer where weak service permissions allow any local user to modify s...

May 28, 2021
CVE-2021-27030 7.8

CVE-2021-27030 is a directory traversal vulnerability in Autodesk FBX Review that allows remote code execution when a user opens a malicious FBX file....

Apr 19, 2021
CVE-2021-27027 7.8

An out-of-bounds read vulnerability in Autodesk FBX Review version 1.5.0 and earlier allows attackers to execute arbitrary code or disclose sensitive ...

Apr 19, 2021

Why Monitor Autodesk Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 149+ known vulnerabilities affecting Autodesk products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Autodesk packages in under 60 seconds. No agents required - completely agentless scanning that works across Autodesk deployments.

Free vulnerability database: Access detailed information about every Autodesk CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Autodesk CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Autodesk CVEs Free