Home
MEDIUM: 4.8 CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:NDefault status
affected
2026.1 and previous versions
affected
Description
A vulnerability in which an attacker can provide a crafted external URL that may redirect a user to an unintended website.
Problem types
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')
Product status
2026.1 and previous versions
References
documentation.solarwinds.com/...hco_2026-2_release_notes.htm
www.solarwinds.com/...ter/security-advisories/CVE-2026-28301
documentation.solarwinds.com/...ore-secure-configuration.htm