SolarWinds Fixes Four Critical Web Help Desk Flaws With Unauthenticated RCE and Auth BypassThe Hacker News·Mar 2, 06:04 UTC · Mar 2, 2026Vulnerability in the wildCVE-2025-40536CVE-2025-40537CVE-2025-40551+7 CVEs60
SolarWinds Web Help Desk Vulnerability Actively ExploitedInfosecurity Magazine·Feb 4, 10:15 UTC · Feb 4, 2026Vulnerability in the wildCVE-2025-40551CVE-2025-40553CVE-2025-40552+1 CVEs60
⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New ThreatsThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Exploit / PoC in the wildCVE-2026-21509CVE-2026-1281CVE-2026-134060
SolarWinds fixes critical Web Help Desk RCE vulnerabilities, upgrade ASAP!Help Net Security·Feb 13, 14:00 UTC · Feb 13, 2026Vulnerability in the wildCVE-2025-40536CVE-2025-40537CVE-2025-40551+5 CVEs60
CISA Adds Actively Exploited SolarWinds Web Help Desk RCE to KEV CatalogThe Hacker News·Feb 5, 03:59 UTC · Feb 5, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-40536CVE-2025-40537+7 CVEs60
SolarWinds addressed four critical Web Help Desk flawsSecurity Affairs·Jan 29, 19:17 UTC · Jan 29, 2026VulnerabilityCVE-2025-40552CVE-2025-40553CVE-2025-40554+3 CVEs60