CVE-2026-5426 – KnowledgeDeliver
CVSS 9.1
CRITICAL
“Critical deserialization weaknesses can give attackers direct control over enterprise systems.”
Digital Knowledge released a patch for a critical vulnerability affecting KnowledgeDeliver. CVE-2026-5426 has a CVSS score of 9.1, which is Critical severity.
The vulnerability involves the use of hard-coded cryptographic keys and unsafe deserialization handling. Successful exploitation could allow remote code execution and privilege escalation in affected environments. The update strengthens serialization protections and improves cryptographic handling to reduce the risk of unauthorized system control.
Key Details
- Attack Vector
- Network
- Attack Complexity
- Low
- Privileges Required
- None
- User Interaction
- None
- CWE Classification
- CWE-321
Patch this CVE on all your endpoints in under 5 minutes.
First 200 endpoints are free forever, scale as needed.