SolarWinds Web Help Desk SAML Authentication Bypass Vulnerability (CVE-2026-28323) 

Summary

SolarWinds Web Help Desk is found to be affected by a SAML authentication bypass vulnerability. This requires the SAML 2.0 authentication method to be enabled.


Affected Products

SolarWinds Web Help Desk 2026.1 and all previous versions


Fixed Software Release

SolarWinds Web Help Desk 2026.2.1


Acknowledgments

Dhabaleshwar Das

Advisory Details
Severity

9.8 Critical

Advisory ID
First Published

07/23/2026

Fixed Version
CVSS Score
Download PDF
Send an Email