Newsletter
Join the Community
Subscribe to our newsletter for the latest news and updates
Demonstrates the CVE-2025-24016 RCE vulnerability in the Wazuh server.
This repository demonstrates the remote code execution (RCE) vulnerability in the Wazuh server, introduced by unsafe deserialization in the wazuh-manager package. The vulnerability allows remote attackers with API access to execute arbitrary code on the server.
run_as endpoint in Wazuh API.