SolarWinds Security Update – 04 June 2026

SolarWinds has released a security update to address a vulnerability affecting SolarWinds Web Help Desk 2026.1 and all previous versions.

The addressed vulnerability could allow the attacker to conduct denial-of-service attacks and cause crashes of the web help desk server due to insufficient memory.

The addressed vulnerability:

SolarWinds Web Help Desk Denial-of-Service Vulnerability (CVE-2026-28299):

  • CVSS: 8.2
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: None
  • Consequences: Denial-of-Service
Vulnerabilities

CVE-2026-28299

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

SolarWinds Security Updates

References