CVE-2025-40551CISA KEV: Actively Exploited

SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability

Published Feb 3, 2026·Updated Feb 3, 2026

Description

SolarWinds Web Help Desk contains a deserialization of untrusted data vulnerability that could lead to remote code execution, which would allow an attacker to run commands on the host machine. This could be exploited without authentication.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free