CVE-2026-28318CISA KEV: Actively Exploited

SolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability

Published Jun 5, 2026·Updated Jun 5, 2026

Description

SolarWinds Serv-U contains an uncontrolled resource consumption vulnerability that allows specially crafted POST requests using the Content-Encoding: deflate header to crash the Serv-U service without authentication.

Public Exploits & PoCs2 found

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free