CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw (CVE-2026-28318) to Known Exploited Vulnerabilities Catalog

AI-generated NewsSnap summary based on source reporting.
Published: 2026-06-06
Category: technology
Source: Cyber Press
Original source

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity denial-of-service (DoS) vulnerability, CVE-2026-28318, affecting SolarWinds Serv-U multi-protocol file server software to its Known Exploited Vulnerabilities (KEV) catalog. CISA confirmed active exploitation of this flaw, which allows threat actors to remotely crash file transfer servers without authentication. Organizations using SolarWinds Serv-U are urged to address this uncontrolled resource consumption flaw (CWE-400).

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai