cbcvebase.
CVE-2026-85217
published 2026-09-10

CVE-2026-85217: A maliciously crafted add-in, when installed and executed in Autodesk Fusion Desktop, can modify persistent network proxy settings without user notification or…

PriorityP341high8.6CVSS 3.1
AVLACLPRNUIRSCCHIHAH
A maliciously crafted add-in, when installed and executed in Autodesk Fusion Desktop, can modify persistent network proxy settings without user notification or consent. A successful exploit may allow an attacker to redirect authenticated Fusion network traffic through an attacker-controlled proxy, potentially exposing sensitive information with the current user.

Affected

1 ranges
VendorProductVersion rangeFixed in
autodeskfusion>= 2705.0.0 < 2705.1.112705.1.11
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.