CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog
The Hacker News | #1 Trusted Source for Cybersecurity News [Uno…
June 6, 2026
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity security flaw impacting SolarWinds Serv-U multi-protocol file server software to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
The vulnerability, tracked as CVE-2026-28318 (CVSS score: 7.5), is a denial-of-service (DoS) bug that causes the service to crash
Discussion in the ATmosphere