CVE-2025-24016CISA KEV: Actively Exploited

Wazuh Server Deserialization of Untrusted Data Vulnerability

Published Jun 10, 2025·Updated Jun 10, 2025

Description

Wazuh contains a deserialization of untrusted data vulnerability that allows for remote code execution on Wazuh servers.

Public Exploits & PoCs7 found

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free