Unrated severityNVD Advisory· Published Oct 21, 2025· Updated Oct 21, 2025
SolarWinds Observability Self-Hosted SQL Injection Vulnerability
CVE-2025-26392
Description
SolarWinds Observability Self-Hosted is susceptible to SQL injection vulnerability that may display sensitive data using a low-level account. This vulnerability requires authentication from a low-privilege account.
Affected products
2- SolarWinds/Observability Self-Hostedv5Range: 2025.2.1 and below
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.