LIVE · cybersecurity feed
Live wire
vendor1 exploited in the wild

Solarwinds

17 CVEs published in the last four months. Exploited flaws first.

Critical15
High2
Medium0
Exploited (KEV)1

Patch these first

CVECVSSSeverityProductSummaryPublished
CVE-2026-28318exploited7.5highserv-uSolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authenti93d ago

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-283239.8criticalweb help deskSolarWinds Web Help Desk is found to be affected by a SAML authentication bypass vulnerability.37d ago
CVE-2026-283139.1criticalserv-uSolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to SMTP hi46d ago
CVE-2026-283149.1criticalserv-uSolarWinds Serv-U is affected by an insecure direct object reference vulnerability that leads to an account takeov46d ago
CVE-2026-283029.1criticalserv-uSolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privile46d ago
CVE-2026-283049.1criticalserv-uSolarWinds Serv-U is affected by a remote code execution vulnerability that, when exploited, can allow the arbitra46d ago
CVE-2026-283059.1criticalserv-uSolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote 46d ago
CVE-2026-283069.1criticalserv-uSolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain administrator to elevat46d ago
CVE-2026-283079.1criticalserv-uSolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain user group to be elevat46d ago
CVE-2026-283179.1criticalserv-uSolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privile46d ago
CVE-2026-283219.1criticalserv-uSolarWinds Serv-U is affected by a broken access control vulnerability that could allow arbitrary file read and wr46d ago
CVE-2026-283089.1criticalserv-uSolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to remote 46d ago
CVE-2026-283099.1criticalserv-uSolarWinds Serv-U is affected by a broken access control vulnerability that allows a domain administrator to creat46d ago
CVE-2026-283109.1criticalserv-uSolarWinds Serv-U is affected by a privilege escalation vulnerability that allows a domain administrator to escala46d ago
CVE-2026-283129.1criticalserv-uSolarWinds Serv-U is affected by a privilege escalation vulnerability.46d ago
CVE-2026-283169.1criticalserv-uSolarWinds Serv-U is affected by an insecure direct object reference (IDOR) vulnerability that can lead to privile46d ago
CVE-2026-282998.2highweb help deskSolarWinds Web Help Desk is found to be affected by a denial-of-service vulnerability, which when exploited, could95d ago
CVE-2026-28318exploited7.5highserv-uSolarWinds Serv-U is susceptible to specially crafted POST requests that crash the Serv-U service without authenti93d ago

Filter the full tracker by Solarwinds