CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

SolarWinds security advisory (AV26-728)

critical
Serial number: AV26-728 Date: July 22, 2026 On July 21, 2026, SolarWinds published security advisories to address critical vulnerabilities in the following product: SolarWinds Serv-U – version 15.5.4 HF1 and prior The Cyber Centre encourages users and administrators to review the provided web link and apply the necessary updates. SolarWinds Security Vulnerabilities

CSIRTS triage

vendor: SolarWindsproduct: Serv-UOtheraffected: 15.5.4 HF1 and prior
What
Critical vulnerabilities have been identified in the Serv-U product.
Who is affected
Users of SolarWinds Serv-U version 15.5.4 HF1 and earlier.
Urgency
Remediation is urgent due to the critical nature of the vulnerabilities.
Action
Update to the latest version of SolarWinds Serv-U.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch Serv-U

Get an email when a new Serv-U advisory drops — max one per day, one-click unsubscribe.

Details

Source
Canadian Centre for Cyber Security (CA · national-cert · site)
Severity
critical
Published
2026-07-22
Exploitation
Not in CISA KEV at last sync

Original advisory: https://cyber.gc.ca/en/alerts-advisories/solarwinds-security-advisory-av26-728

More from Canadian Centre for Cyber Security