PT-2026-33340 · Digital Knowledge · Knowledgedeliver
Published
2026-04-16
·
Updated
2026-04-16
·
CVE-2026-5426
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Hard-coded ASP.NET/IIS machineKey value in Digital Knowledge KnowledgeDeliver deployments prior to February 24, 2026 allows adversaries to circumvent ViewState validation mechanisms and achieve remote code execution via malicious ViewState deserialization attacks
Deserialization of Untrusted Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Knowledgedeliver