CVE-2026-28322: SolarWinds Database Performance Analyzer Stored Cross-Site Scripting Vulnerability
SolarWinds Database Performance Analyzer was found to be affected by a stored cross-site scripting vulnerability, which when exploited, can lead to unintended script execution.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
SolarWinds Database Performance Analyzerto a version that resolves this vulnerability.Fixed in 2026.2
Event History
Frequently Asked Questions
What is the severity of CVE-2026-28322?
The severity of CVE-2026-28322 is rated as medium with a score of 5.6.
How do I fix CVE-2026-28322?
To mitigate CVE-2026-28322, ensure that you update to the latest version of SolarWinds Database Performance Analyzer that addresses this vulnerability.
What impact does CVE-2026-28322 have on my system?
CVE-2026-28322 can lead to unintended script execution due to a stored cross-site scripting vulnerability.
Is CVE-2026-28322 easy to exploit?
Exploitation of CVE-2026-28322 requires an attacker to have specific privileges and user interaction, making it moderately challenging to exploit.
What type of vulnerability is CVE-2026-28322 classified as?
CVE-2026-28322 is classified as a stored cross-site scripting vulnerability, related to input validation issues.