Link following in AnyDesk for Windows - #VU137228

 

Link following in AnyDesk for Windows - #VU137228

Published: July 9, 2026


Vulnerability identifier: #VU137228
CSH Severity: Low
CVSS v4: 5.7 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-59
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to an insecure link following issue within the Send Support Information feature. A local user can cause a denial of service condition on the target system.


Affected software

AnyDesk for Windows

Remediation

Cybersecurity Help is currently unaware of any official solution to address this vulnerability.


External References

Related Security Bulletins