Ajax.NET Professional Deserialization of Untrusted Data Vulnerability

Ajax.NET Professional (AjaxPro) contains a deserialization of untrusted data vulnerability that could allow for remote code execution via arbitrary .NET classes. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.

Published 25 Aug 2026Updated 25 Aug 20269 sources
CVSS 0.0 △ CISA KEV

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.