SolarWinds Web Help Desk SAML Authentication Bypass Vulnerability (CVE-2026-28323)
Summary
SolarWinds Web Help Desk is found to be affected by a SAML authentication bypass vulnerability. This requires the SAML 2.0 authentication method to be enabled.
Affected Products
SolarWinds Web Help Desk 2026.1 and all previous versions
Fixed Software Release
SolarWinds Web Help Desk 2026.2.1
Acknowledgments
Dhabaleshwar Das
Advisory Details
Severity
9.8 Critical
Advisory ID
First Published
07/23/2026
Fixed Version