logo

Critical SolarWinds Web Help Desk bug under attack

ID: 71602a4c-3f38-53c6-b068-3a08da0a8373

STIX ID: report--71602a4c-3f38-53c6-b068-3a08da0a8373

Feed Name: The Register (Security)

Threat Score
80/100

Date Published: 2026-02-04

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Attackers are exploiting a critical untrusted deserialization vulnerability in SolarWinds Web Help Desk (CVE-2025-40551) that permits unauthenticated remote code execution; SolarWinds released a patch in version 2026.1 and CISA issued an urgent three-day remediation deadline for federal agencies, underscoring elevated risk and active exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.