solarwinds
Safeguard articles tagged "solarwinds" — guides, analysis, and best practices for software supply chain and application security.
24 articles
CVE-2021-35247: SolarWinds Serv-U Improper Input Validation Vulnerability
CVE-2021-35247 affects SolarWinds Serv-U and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-21.
CVE-2016-3643: SolarWinds Virtualization Manager Privilege Escalation Vulnerability
CVE-2016-3643 affects SolarWinds Virtualization Manager and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-35211: SolarWinds Serv-U Remote Code Execution Vulnerability
CVE-2021-35211 affects SolarWinds Serv-U and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-10148: SolarWinds Orion Authentication Bypass Vulnerability
CVE-2020-10148 affects SolarWinds Orion and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2024-28995: SolarWinds Serv-U Path Traversal Vulnerability
CVE-2024-28995 affects SolarWinds Serv-U and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-07-17.
CVE-2024-28986: SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability
CVE-2024-28986 affects SolarWinds Web Help Desk and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-08-15.
CVE-2024-28987: SolarWinds Web Help Desk Hardcoded Credential Vulnerability
CVE-2024-28987 affects SolarWinds Web Help Desk and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2024-10-15.
CVE-2025-40551: SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability
CVE-2025-40551 affects SolarWinds Web Help Desk and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2026-02-03.
CVE-2025-40536: SolarWinds Web Help Desk Security Control Bypass Vulnerability
CVE-2025-40536 affects SolarWinds Web Help Desk and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2026-02-12.
CVE-2025-26399: SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability
CVE-2025-26399 affects SolarWinds Web Help Desk and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2026-03-09.
CVE-2026-28318: SolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability
CVE-2026-28318 affects SolarWinds Serv-U and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2026-06-05.
The SolarWinds Orion Supply Chain Attack: What Actually Happened
A factual summary of the 2020 SolarWinds Orion compromise, in which attackers inserted malicious code into a legitimate software update, and what it means for build-pipeline integrity.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.