Product of SolarWinds

Web Help Desk

As of , 5 SolarWinds Web Help Desk vulnerabilities are on CISA's list of exploited vulnerabilities, 1 of them used in ransomware campaigns; 3 were added in 2026. Patch first: CVE-2025-26399.

Patch first

Patch first
#VulnerabilityProductOur groupListedDeadlineEPSS
1CVE-2025-26399Deserialization of Untrusted DataSolarWinds Web Help DeskPatch nowRansomware use, listed within a year0.90
2CVE-2025-40536Security Control BypassSolarWinds Web Help DeskPatch this weekMetasploit module; EPSS 0.740.74
3CVE-2025-40551Deserialization of Untrusted DataSolarWinds Web Help DeskPatch this weekMetasploit module; EPSS 0.840.84
4CVE-2024-28987Hardcoded CredentialSolarWinds Web Help DeskPatch this weekMetasploit module; EPSS 0.930.93
5CVE-2024-28986Deserialization of Untrusted DataSolarWinds Web Help DeskPatch this weekEPSS 0.850.85

Added each year

1232024: 2220242025: nonenone20252026: 332026
Entries CISA added each year, removed ones included. Source: CISA KEV.
Show the numbers
Periodentries added
20242
2025none
20263

Used in ransomware

Changes CISA made to these entries

  1. CVE-2025-26399 SolarWinds Web Help DeskRansomware use: Unknown to Known.

Every change we recorded