SolarWinds Observability RCE flaws patched
CERT-FR advisory warns of two remote code execution vulnerabilities in SolarWinds Observability Self-Hosted before version 2026.2.3.
CERT-FR has published an advisory covering two vulnerabilities (CVE-2026-28324 and CVE-2026-28325) in SolarWinds Observability Self-Hosted. Both flaws allow an attacker to achieve remote code execution on affected systems. All versions prior to 2026.2.3 are affected.
No indication of active exploitation is provided in the advisory. Defenders running SolarWinds Observability Self-Hosted should consult SolarWinds' own security bulletins for patch details and upgrade to version 2026.2.3 or later as soon as possible, given the remote code execution impact.
Mentioned in this report
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1215
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free