Nov. 14, 2023, midnight |

Siemens ProductCERT Security Advisories cert-portal.siemens.com

Mendix Runtime contains a capture-replay flaw which could have an impact to apps built with the platform, if certain preconditions are met that depend on the app’s model and access control design. This could allow authenticated attackers to access or modify objects without proper authorization, or escalate privileges in the context of the vulnerable app.


Siemens has released updates for the affected products and recommends to update to the latest versions.

access access control app apps attackers authorization capture context control design escalation flaw impact platform privilege privilege escalation privileges replay runtime ssa vulnerability

More from cert-portal.siemens.com / Siemens ProductCERT Security Advisories

Junior Cybersecurity Analyst - 3346195

@ TCG | 725 17th St NW, Washington, DC, USA

Cyber Intelligence, Senior Advisor

@ Peraton | Chantilly, VA, United States

Consultant Cybersécurité H/F - Innovative Tech

@ Devoteam | Marseille, France

Manager, Internal Audit (GIA Cyber)

@ Standard Bank Group | Johannesburg, South Africa

Staff DevSecOps Engineer

@ Raft | San Antonio, TX (Local Remote)

Domain Leader Cybersecurity

@ Alstom | Bengaluru, KA, IN