CVE-2024-28076: SolarWinds Platform

Low severity, CVSS 3.8. EPSS: 0.3% chance of exploitation in the next 30 days.

The SolarWinds Platform was susceptible to a Arbitrary Open Redirection Vulnerability. A potential attacker can redirect to different domain when using URL parameter with relative entry in the correct format

Affected products

  • SolarWinds SolarWinds Platform: before 2024.1.1 (fixed in 2024.1.1)

Published 2024-04-18. Last modified 2026-06-17.