SolarWinds Access Rights Manager Hard-Coded Key Flaw Enables Unauthenticated RCE
A high-severity vulnerability, CVE-2026-28326, with a CVSS score of 8.8, was discovered in SolarWinds Access Rights Manager (ARM). The flaw allows for unauthenticated remote code execution and affects all versions of ARM 2026.2 and prior. SolarWinds has released security updates to address this vulnerability. Organizations are urged to apply the patches immediately to prevent potential exploitation.