CVE-2025-54560: Desktopalert Pingalert Application Server

Low severity, CVSS 3.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A Server-side Request Forgery vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows Probing of internal infrastructure.

Affected products

  • Desktopalert Pingalert Application Server: from 6.1.0.11, before 6.1.1.5 (fixed in 6.1.1.5)

Published 2025-11-14. Last modified 2026-06-17.