PT-2026-38669 · Linqpad · Linqpad

Published

2026-05-08

·

Updated

2026-05-10

·

CVE-2024-53326

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions LINQPad Pro edition versions prior to 5.52.01
Description Unsafe Deserialization occurs in the PopulateFromCache() function within LINQPad.AutoRefManager, which can lead to remote code execution.
Recommendations Update to version 5.52.01 or later.

Exploit

Fix

RCE

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2024-53326

Affected Products

Linqpad