Active Exploitation of SolarWinds Web Help Desk (CVE-2025-26399)

Huntress has observed active exploitation of a deserialization and remote code execution against the SolarWinds Web Help Desk software (CVE-2025-26399).

security

Sources

Vulnerabilities

Why this score
Signals contributing to the severity score
SignalPoints
kev added50
kev short fuse — 3 days to remediate15
kev ransomware10
public poc — 1 repositories20