CVE-2025-26399CISA KEV: Actively Exploited

SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability

Published Mar 9, 2026·Updated Mar 9, 2026

Description

SolarWinds Web Help Desk contain a deserialization of untrusted data vulnerability in AjaxProxy that could allow an attacker to run commands on the host machine.

Public Exploits & PoCs1 found

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free