Unrated severityNVD Advisory· Published Jun 10, 2025· Updated Jun 10, 2025
SolarWinds SWOSH Open Redirection Vulnerability
CVE-2025-26394
Description
SolarWinds Observability Self-Hosted
is susceptible to an open redirection vulnerability. The URL is not properly sanitized, and an attacker could manipulate the string to redirect a user to a malicious site. The attack complexity is high, and authentication is required.
Affected products
2- SolarWinds/SolarWinds Observability Self-Hostedv5Range: 2025.1.1 and previous versions
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.