CVE-2020-35856: SolarWinds Orion Platform

Medium severity, CVSS 4.8. EPSS: 0.7% chance of exploitation in the next 30 days.

SolarWinds Orion Platform before 2020.2.5 allows stored XSS attacks by an administrator on the Customize View page.

Affected products

  • SolarWinds Orion Platform: before 2020.2.5 (fixed in 2020.2.5)

Published 2021-03-26. Last modified 2026-06-17.