Active Exploitation of SolarWinds Serv-U Flaw CVE-2026-28318
ID: c240510c-c424-50e9-ade0-b44b6d5936b6
STIX ID: report--c240510c-c424-50e9-ade0-b44b6d5936b6
Feed Name: ThreatCluster
Threat Score
CISA and multiple vendors warn of active exploitation of SolarWinds Serv-U CVE-2026-28318, an unauthenticated denial-of-service flaw triggered by specially crafted POST requests with Content-Encoding:deflate. SolarWinds released 15.5.4 Hotfix 1 and federal agencies have been ordered to patch by June 19, 2026; more than 12,000 Serv-U instances are exposed online, increasing immediate operational risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
