{"schema_version":1,"title":"SolarWinds vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 34 vulnerabilities in SolarWinds: 2 in the last 7 days and 20 in the last 90 days, 27 of them critical and 11 exploited in the wild. The most recent, CVE-2026-28325, was published on 22 September 2026. 3 technologies have a page of their own.","url":"https://junglewise.ai/threats/vendors/solarwinds","json_url":"https://junglewise.ai/threats/vendors/solarwinds.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/solarwinds","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":3,"all_time":34,"critical":27,"exploited":11,"last_7_days":2,"last_30_days":3,"last_90_days":20,"last_365_days":27},"latest":[{"cve":"CVE-2026-28325","cvss":8.8,"epss":0.0152,"slug":"cve-2026-28325-solarwinds-observability-self-hosted-was-found-to-be-affected-by","title":"SolarWinds Observability Self-Hosted unauthenticated remote code execution","severity":"high","exploited":false,"published_at":"2026-09-22T20:17:03.43+00:00","url":"https://junglewise.ai/threats/cve-2026-28325-solarwinds-observability-self-hosted-was-found-to-be-affected-by"},{"cve":"CVE-2026-28324","cvss":9.8,"epss":0.0065,"slug":"cve-2026-28324-solarwinds-observability-self-hosted-was-found-to-be-affected-by","title":"SolarWinds Observability Self-Hosted unauthenticated remote code execution","severity":"critical","exploited":false,"published_at":"2026-09-22T20:17:03.25+00:00","url":"https://junglewise.ai/threats/cve-2026-28324-solarwinds-observability-self-hosted-was-found-to-be-affected-by"},{"cve":"CVE-2026-28326","cvss":8.8,"epss":0.0069,"slug":"cve-2026-28326-solarwinds-access-rights-manager-unauthenticated-remote-code","title":"SolarWinds Access Rights Manager unauthenticated remote code execution","severity":"high","exploited":false,"published_at":"2026-09-17T17:16:39.96+00:00","url":"https://junglewise.ai/threats/cve-2026-28326-solarwinds-access-rights-manager-unauthenticated-remote-code"},{"cve":"CVE-2026-28323","cvss":9.8,"slug":"cve-2026-28323-solarwinds-web-help-desk-saml-authentication-bypass","title":"SolarWinds Web Help Desk SAML authentication bypass","severity":"critical","exploited":false,"published_at":"2026-07-30T16:17:10.71+00:00","url":"https://junglewise.ai/threats/cve-2026-28323-solarwinds-web-help-desk-saml-authentication-bypass"},{"cve":"CVE-2026-28321","cvss":9.1,"slug":"cve-2026-28321-solarwinds-serv-u-broken-access-control-privilege-escalation","title":"SolarWinds Serv-U broken access control privilege escalation","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:10.293+00:00","url":"https://junglewise.ai/threats/cve-2026-28321-solarwinds-serv-u-broken-access-control-privilege-escalation"},{"cve":"CVE-2026-28317","cvss":9.1,"slug":"cve-2026-28317-solarwinds-serv-u-privilege-escalation-via-idor","title":"SolarWinds Serv-U privilege escalation via IDOR","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:10.157+00:00","url":"https://junglewise.ai/threats/cve-2026-28317-solarwinds-serv-u-privilege-escalation-via-idor"},{"cve":"CVE-2026-28316","cvss":9.1,"slug":"cve-2026-28316-solarwinds-serv-u-idor-privilege-escalation-to-root","title":"SolarWinds Serv-U IDOR privilege escalation to root","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:09.943+00:00","url":"https://junglewise.ai/threats/cve-2026-28316-solarwinds-serv-u-idor-privilege-escalation-to-root"},{"cve":"CVE-2026-28315","cvss":6.2,"slug":"cve-2026-28315-solarwinds-serv-u-stored-xss-in-administrator-interface","title":"SolarWinds Serv-U stored XSS in administrator interface","severity":"medium","exploited":false,"published_at":"2026-07-21T16:17:09.417+00:00","url":"https://junglewise.ai/threats/cve-2026-28315-solarwinds-serv-u-stored-xss-in-administrator-interface"},{"cve":"CVE-2026-28314","cvss":9.1,"slug":"cve-2026-28314-solarwinds-serv-u-account-takeover-via-idor","title":"SolarWinds Serv-U account takeover via IDOR","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:09.283+00:00","url":"https://junglewise.ai/threats/cve-2026-28314-solarwinds-serv-u-account-takeover-via-idor"},{"cve":"CVE-2026-28313","cvss":9.1,"slug":"cve-2026-28313-solarwinds-serv-u-idor-and-smtp-hijacking","title":"SolarWinds Serv-U IDOR and SMTP Hijacking","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:09.147+00:00","url":"https://junglewise.ai/threats/cve-2026-28313-solarwinds-serv-u-idor-and-smtp-hijacking"},{"cve":"CVE-2026-28312","cvss":9.1,"slug":"cve-2026-28312-solarwinds-serv-u-privilege-escalation-in-administrator-group","title":"SolarWinds Serv-U privilege escalation in administrator group access","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:09+00:00","url":"https://junglewise.ai/threats/cve-2026-28312-solarwinds-serv-u-privilege-escalation-in-administrator-group"},{"cve":"CVE-2026-28310","cvss":9.1,"slug":"cve-2026-28310-solarwinds-serv-u-privilege-escalation-in-administrative","title":"SolarWinds Serv-U privilege escalation in administrative interface","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:08.877+00:00","url":"https://junglewise.ai/threats/cve-2026-28310-solarwinds-serv-u-privilege-escalation-in-administrative"},{"cve":"CVE-2026-28309","cvss":9.1,"slug":"cve-2026-28309-solarwinds-serv-u-broken-access-control-in-administrator-account","title":"SolarWinds Serv-U broken access control in administrator account creation","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:08.743+00:00","url":"https://junglewise.ai/threats/cve-2026-28309-solarwinds-serv-u-broken-access-control-in-administrator-account"},{"cve":"CVE-2026-28308","cvss":9.1,"slug":"cve-2026-28308-solarwinds-serv-u-idor-remote-code-execution","title":"SolarWinds Serv-U IDOR remote code execution","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:08.577+00:00","url":"https://junglewise.ai/threats/cve-2026-28308-solarwinds-serv-u-idor-remote-code-execution"},{"cve":"CVE-2026-28307","cvss":9.1,"slug":"cve-2026-28307-solarwinds-serv-u-privilege-escalation-in-domain-user-groups","title":"SolarWinds Serv-U privilege escalation in domain user groups","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:08.443+00:00","url":"https://junglewise.ai/threats/cve-2026-28307-solarwinds-serv-u-privilege-escalation-in-domain-user-groups"},{"cve":"CVE-2026-28306","cvss":9.1,"slug":"cve-2026-28306-solarwinds-serv-u-privilege-escalation-in-domain-administration","title":"SolarWinds Serv-U privilege escalation in domain administration","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:08.317+00:00","url":"https://junglewise.ai/threats/cve-2026-28306-solarwinds-serv-u-privilege-escalation-in-domain-administration"},{"cve":"CVE-2026-28305","cvss":9.1,"slug":"cve-2026-28305-solarwinds-serv-u-idor-remote-code-execution-as-root","title":"SolarWinds Serv-U IDOR remote code execution as root","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:08.18+00:00","url":"https://junglewise.ai/threats/cve-2026-28305-solarwinds-serv-u-idor-remote-code-execution-as-root"},{"cve":"CVE-2026-28304","cvss":9.1,"slug":"cve-2026-28304-solarwinds-serv-u-remote-code-execution-via-improper-access","title":"SolarWinds Serv-U remote code execution via improper access control","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:08.05+00:00","url":"https://junglewise.ai/threats/cve-2026-28304-solarwinds-serv-u-remote-code-execution-via-improper-access"},{"cve":"CVE-2026-28302","cvss":9.1,"slug":"cve-2026-28302-solarwinds-serv-u-idor-privilege-escalation-in-group-management","title":"SolarWinds Serv-U IDOR privilege escalation in group management","severity":"critical","exploited":false,"published_at":"2026-07-21T16:17:07.903+00:00","url":"https://junglewise.ai/threats/cve-2026-28302-solarwinds-serv-u-idor-privilege-escalation-in-group-management"},{"cve":"CVE-2026-28322","cvss":5.6,"slug":"cve-2026-28322-solarwinds-database-performance-analyzer-stored-xss","title":"SolarWinds Database Performance Analyzer stored XSS","severity":"medium","exploited":false,"published_at":"2026-06-30T23:17:26.993+00:00","url":"https://junglewise.ai/threats/cve-2026-28322-solarwinds-database-performance-analyzer-stored-xss"},{"cve":"CVE-2026-28301","cvss":4.8,"slug":"cve-2026-28301-solarwinds-observability-self-hosted-open-redirect","title":"SolarWinds Observability Self-Hosted open redirect","severity":"medium","exploited":false,"published_at":"2026-06-09T17:17:03.287+00:00","url":"https://junglewise.ai/threats/cve-2026-28301-solarwinds-observability-self-hosted-open-redirect"},{"cve":"CVE-2026-28318","cvss":7.5,"epss":0.0006,"slug":"cve-2026-28318-solarwinds-serv-u-denial-of-service-via-crafted-post-request","title":"SolarWinds Serv-U denial of service via crafted POST request","severity":"critical","exploited":true,"published_at":"2026-06-04T15:16:50.407+00:00","url":"https://junglewise.ai/threats/cve-2026-28318-solarwinds-serv-u-denial-of-service-via-crafted-post-request"},{"cve":"CVE-2026-28299","cvss":8.2,"slug":"cve-2026-28299-solarwinds-web-help-desk-denial-of-service-via-memory-exhaustion","title":"SolarWinds Web Help Desk denial of service via memory exhaustion","severity":"high","exploited":false,"published_at":"2026-06-02T20:16:33.783+00:00","url":"https://junglewise.ai/threats/cve-2026-28299-solarwinds-web-help-desk-denial-of-service-via-memory-exhaustion"},{"cve":"CVE-2018-25252","cvss":6.2,"epss":0.003,"slug":"cve-2018-25252-solarwinds-ftp-voyager-buffer-overflow-in-site-profile-ip-field","title":"SolarWinds FTP Voyager buffer overflow in site profile IP field","severity":"medium","exploited":false,"published_at":"2026-04-04T14:16:21.367+00:00","url":"https://junglewise.ai/threats/cve-2018-25252-solarwinds-ftp-voyager-buffer-overflow-in-site-profile-ip-field"},{"cve":"CVE-2025-26399","cvss":9.8,"epss":0.2776,"slug":"cve-2025-26399-solarwinds-web-help-desk-deserialization-rce-in-ajaxproxy","title":"SolarWinds Web Help Desk deserialization RCE in AjaxProxy","severity":"critical","exploited":true,"published_at":"2026-03-09T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-26399-solarwinds-web-help-desk-deserialization-rce-in-ajaxproxy"}],"vendor":{"hub":true,"name":"SolarWinds","slug":"solarwinds","homepage":"https://www.solarwinds.com/","description":"An American company that develops software for businesses to help manage their networks, systems, and information technology infrastructure.","url":"https://junglewise.ai/threats/vendors/solarwinds"},"weekly":[{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":14,"exploited":0,"vulnerabilities":15},{"week":"2026-07-27","critical":1,"exploited":0,"vulnerabilities":1},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-09-21","critical":1,"exploited":0,"vulnerabilities":2},{"week":"2026-09-28","critical":0,"exploited":0,"vulnerabilities":0}],"most_severe":[{"cve":"CVE-2021-35211","cvss":10,"slug":"cve-2021-35211-solarwinds-serv-u-remote-code-execution-vulnerability","title":"SolarWinds Serv-U Remote Code Execution Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2021-35211-solarwinds-serv-u-remote-code-execution-vulnerability"},{"cve":"CVE-2025-40551","cvss":9.8,"epss":0.8612,"slug":"cve-2025-40551-solarwinds-web-help-desk-untrusted-data-deserialization","title":"SolarWinds Web Help Desk untrusted data deserialization","severity":"critical","exploited":true,"published_at":"2026-02-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-40551-solarwinds-web-help-desk-untrusted-data-deserialization"},{"cve":"CVE-2025-40536","cvss":9.8,"epss":0.6891,"slug":"cve-2025-40536-solarwinds-web-help-desk-security-control-bypass","title":"SolarWinds Web Help Desk security control bypass","severity":"critical","exploited":true,"published_at":"2026-02-12T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-40536-solarwinds-web-help-desk-security-control-bypass"},{"cve":"CVE-2025-26399","cvss":9.8,"epss":0.2776,"slug":"cve-2025-26399-solarwinds-web-help-desk-deserialization-rce-in-ajaxproxy","title":"SolarWinds Web Help Desk deserialization RCE in AjaxProxy","severity":"critical","exploited":true,"published_at":"2026-03-09T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-26399-solarwinds-web-help-desk-deserialization-rce-in-ajaxproxy"},{"cve":"CVE-2024-28986","cvss":9.8,"slug":"cve-2024-28986-solarwinds-web-help-desk-deserialization-of-untrusted-data","title":"SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability","severity":"critical","exploited":true,"published_at":"2024-08-15T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-28986-solarwinds-web-help-desk-deserialization-of-untrusted-data"},{"cve":"CVE-2020-10148","cvss":9.8,"slug":"cve-2020-10148-solarwinds-orion-authentication-bypass-vulnerability","title":"SolarWinds Orion Authentication Bypass Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2020-10148-solarwinds-orion-authentication-bypass-vulnerability"},{"cve":"CVE-2024-28987","cvss":9.1,"slug":"cve-2024-28987-solarwinds-web-help-desk-hardcoded-credential-vulnerability","title":"SolarWinds Web Help Desk Hardcoded Credential Vulnerability","severity":"critical","exploited":true,"published_at":"2024-10-15T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-28987-solarwinds-web-help-desk-hardcoded-credential-vulnerability"},{"cve":"CVE-2024-28995","cvss":8.6,"slug":"cve-2024-28995-solarwinds-serv-u-path-traversal-vulnerability","title":"SolarWinds Serv-U Path Traversal Vulnerability","severity":"critical","exploited":true,"published_at":"2024-07-17T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-28995-solarwinds-serv-u-path-traversal-vulnerability"},{"cve":"CVE-2016-3643","cvss":7.8,"slug":"cve-2016-3643-solarwinds-virtualization-manager-privilege-escalation","title":"SolarWinds Virtualization Manager Privilege Escalation Vulnerability","severity":"critical","exploited":true,"published_at":"2021-11-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2016-3643-solarwinds-virtualization-manager-privilege-escalation"},{"cve":"CVE-2026-28318","cvss":7.5,"epss":0.0006,"slug":"cve-2026-28318-solarwinds-serv-u-denial-of-service-via-crafted-post-request","title":"SolarWinds Serv-U denial of service via crafted POST request","severity":"critical","exploited":true,"published_at":"2026-06-04T15:16:50.407+00:00","url":"https://junglewise.ai/threats/cve-2026-28318-solarwinds-serv-u-denial-of-service-via-crafted-post-request"}],"generated_at":"2026-09-28T03:07:00.154823+00:00","technologies":[{"name":"SolarWinds Serv-U","slug":"serv-u","vulnerabilities":20,"url":"https://junglewise.ai/threats/technologies/serv-u"},{"name":"SolarWinds Web-Help-Desk","slug":"web-help-desk","vulnerabilities":7,"url":"https://junglewise.ai/threats/technologies/web-help-desk"},{"name":"SolarWinds Observability Self-Hosted","slug":"observability-self-hosted","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/observability-self-hosted"}]}