Skip to content
feed: live
>_0dayNews
CVE Record
[ CRITICAL ]CVE-2026-28324

SolarWinds Observability Self-Hosted Unauth RCE

CVSS 9.8 critical. Unauthenticated RCE via insufficient integrity checks in SolarWinds Observability Self-Hosted; affects installations in non-default, non-secure configurations.

cat cve-2026-28324.json
Vendor
SolarWinds
Product
Observability Self-Hosted
CVSS
9.8
EPSS (exploit probability)
0.7%
Status
patched
Published