Rishi[verified]@rxeriumDisclosure
The note announces two critical SolarWinds WHD vulnerabilities—authentication bypass and remote command execution—provides detection script links, confirms no current active exploitation, and urges patching via SolarWinds' advisory.
blackorbird[verified]@blackorbirdDisclosure
The post announces three new SolarWinds Web Help Desk CVEs, lists basic technical details, and links to a blog post likely containing further information, but provides no evidence of exploitation, patches, or PoC code in the text.
NerdieNews[verified]@NewsNerdieActive Exploitation
Several critical vulnerabilities, including CVE‑2025‑8088 in WinRAR and CVE‑2026‑24858 in FortiCloud, are being actively exploited in the wild, with patches available for those that have been released.
ThreatSynop[verified]@ThreatSynopPatch
SolarWinds has released patches for multiple critical Web Help Desk vulnerabilities—including auth bypass and remote code execution—and advises prompt upgrades to mitigate potential exploitation.
ThreatSynop[verified]@ThreatSynopPatch
SolarWinds fixed four critical Web Help Desk flaws (CVE‑2025‑40552, CVE‑2025‑40554, CVE‑2025‑40551) that allow unauthenticated authentication bypass and RCE; upgrading to WHD 2026.1 is recommended.
Sami Laiho[verified]@samilaihoPatch
SolarWinds has disclosed a critical authentication bypass flaw in Web Help Desk (CVE‑2025‑40554) and issued an official fix; no active exploitation or PoC have been reported.
ThreatSynop[verified]@ThreatSynopPatch
The notice announces that SolarWinds has released a patch for critical auth-bypass and RCE flaws in Web Help Desk, emphasizing the need to upgrade immediately due to rapid real-world exploitation of these vulnerabilities.
Dark Web Informer@DarkWebInformerDisclosure
The post announces four critical CVEs in SolarWinds Web Help Desk, providing technical details such as RCE via deserialization and authentication bypass, but no evidence of active exploitation or mitigation.