Link following in AnyDesk for Windows - #VU137227

 

Link following in AnyDesk for Windows - #VU137227

Published: July 9, 2026


Vulnerability identifier: #VU137227
CSH Severity: Low
CVSS v4: 5.7 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-59
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an insecure link following issue within the handling of screen recording files. A local user can cause a denial of service condition on the target system.


Affected software

AnyDesk for Windows

Remediation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.


External References

Related Security Bulletins