| Mobile Web

Cl0p ransomware affiliate shows signs of exploiting PTC Windchill, FlexPLM flaw

Signs have been detected that an affiliate group of the Cl0p ransomware operation is seeking to exploit a critical remote code execution vulnerability in PTC’s product lifecycle management platforms Windchill and FlexPLM. The flaw, tracked as CVE-2026-12569, has a CVSS score of 9.3 and could allow attacks without login due to improper handling of unvalidated external data. A patch was released on June 17.