CVE-2026-28326

SolarWinds Access Rights Manager was reported to be affected by an unauthenticated remote code execution vulnerability. The issue stems from a hardcoded static key.

  • Published Sep 17, 2026
  • CVSS 8.8 high
  • 0.7% chance of exploitation in the next 30 days (EPSS)

Affected software

In the news

CVE-2026-28326 at the National Vulnerability Database