CVE Record
[ CRITICAL ]CVE-2026-28324
SolarWinds Observability Self-Hosted Unauth RCE
CVSS 9.8 critical. Unauthenticated RCE via insufficient integrity checks in SolarWinds Observability Self-Hosted; affects installations in non-default, non-secure configurations.
- Vendor
- SolarWinds
- Product
- Observability Self-Hosted
- CVSS
- 9.8
- EPSS (exploit probability)
- 0.7%
- Status
- patched
- Published
