The OWASP Zed Attack Proxy (ZAP) ViewState add-on was found to contain an insecure Java deserialization flaw that can lead to arbitrary code execution inside the ZAP JVM. According to the advisory, versions before ViewState v4 deserialize attacker-controlled data from the javax.faces.ViewState HTTP response parameter when the Desktop UI renders the ViewState panel. The vulnerable JSFViewState.decode() path base64-decodes the value and passes it directly to Java deserialization without a filter, allowlist, or type restriction.
The issue can be triggered by a malicious or compromised proxied web server that returns a crafted serialized Java object in the response, causing code execution on the analyst’s system running ZAP. ZAP disclosed the vulnerability and released ViewState version 4, with the corresponding release disabling JSF support and raising the minimum required ZAP version to 2.17.0. Organizations using ZAP for testing should identify installations with the ViewState add-on below v4 and upgrade promptly, especially where users proxy untrusted applications through the Desktop UI.

See affected versions and whether adversaries are exploiting it.
2 events from the most recent confirmed update back to the earliest known activity.
On 2026-06-24, ZAP published a security notice describing a Java deserialization vulnerability in the ViewState add-on. The flaw affects versions before 4 and can allow arbitrary code execution when a malicious proxied server supplies a crafted javax.faces.ViewState value that is deserialized in the ZAP JVM.
On 2026-06-24, the ZAP project published the ViewState add-on version 4 release. The release notes state that support for JSF was disabled, which aligns with the remediation for the vulnerable ViewState handling.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
3 references tracked. Mallory keeps watching after this page renders.
vulncheck.com
Open sourcezaproxy.org
Open sourcegithub.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.