SolarWinds has released security updates to address the flaw. Users should update Access Rights Manager to the latest patched version immediately. It is recommended to monitor SolarWinds advisories for additional details and to apply patches within established maintenance windows.
Quick answers
What is CVE-2026-28326?
SolarWinds has released security updates to address the flaw. Users should update Access Rights Manager to the latest patched version immediately. It is recommended to monitor SolarWinds advisories for additional details and to apply patches within established maintenance windows.
How severe is CVE-2026-28326?
high, CVSS 8.8
Is CVE-2026-28326 known to be exploited?
It is not marked known-exploited in this record.
How should CVE-2026-28326 be mitigated?
SolarWinds has released security updates to address the flaw. Users should update Access Rights Manager to the latest patched version immediately. It is recommended to monitor SolarWinds advisories for additional details and to apply patches within established maintenance windows.
CVSS
8.8
Vendor
SolarWinds
Published
Sep 30, 2026 · 08:05
Patch
Unknown / not confirmed
Affected products
Access Rights Manager
Mitigation
SolarWinds has released security updates to address the flaw. Users should update Access Rights Manager to the latest patched version immediately. It is recommended to monitor SolarWinds advisories for additional details and to apply patches within established maintenance windows.
SolarWinds has released security updates to address a high-severity flaw in Access Rights Manager (ARM). Tracked as CVE-2026-28326, the vulnerability carries a CVSS score of 8.8 and affects all versions of ARM 2026.2 and prior. The issue involves a hard-coded key that could enable unauthenticated remote code execution. As of the report date, exploitation status is unconfirmed.