Unrated severityNVD Advisory· Published Nov 18, 2025· Updated Nov 18, 2025
SolarWinds Observability Self-Hosted XSS Vulnerability
CVE-2025-26391
Description
SolarWinds Observability Self-Hosted XSS Vulnerability. The SolarWinds Platform was susceptible to a XSS vulnerability that affects user-created URL fields. This vulnerability requires authentication from a low-level account.
Affected products
2- SolarWinds/SolarWinds Observability Self-Hostedv5Range: SolarWinds Observability Self-Hosted 2025.4 and prior versions
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.