Back to search

SolarWinds

Observability (Self-Hosted)

See the latest tracked release, confirm when it was published, and subscribe for update emails.

Current version
Last checked: 2026-09-04

2026.2.2

Release date
July 30, 2026
Security status
Current version appears affected by 2 high-severity CVEs.

Source

Vendor Release Information

Public release notes are linked for the latest stored release.

Release history

See the latest published releases stored for this product.

Version Published Notes
2026.2.2 2026-07-30 Release Notes
2026.2.1 2026-06-16 Release Notes
2026.2 2026-06-09 Release Notes
2026.1.1 2026-03-26 Release Notes
2025.2.1 2025-07-24 Release Notes

Vulnerability tracking

versionPing monitors CVEs for this product. Matching CVEs are listed below. We only display CVEs with a CVSS score of 7.0 or higher that were published within the last 90 days.

Affected status is inferred from published affected version ranges where available. Always verify against the vendor advisory before making production decisions.

CVE Severity Published Status Summary
CVE-2025-26397 HIGH (7.8) 2025-07-24 Current versionaffected

SolarWinds Observability Self-Hosted is susceptible to Deserialization of Untrusted Data Local Privilege Escalation vulnerability. An attacker with low privileges can escalate privileges to run malicious files copied to a permission-protected folder. This vulnerability requires authentication from a low-level account and local access to the host server.

Affected versions
  • 2025.2 and previous versions
CVE-2025-26395 HIGH (7.1) 2025-06-10 Current versionaffected

SolarWinds Observability Self-Hosted was susceptible to a cross-site scripting (XSS) vulnerability due to an unsanitized field in the URL. The attack requires authentication using an administrator-level account and user interaction is required.

Affected versions
  • 2025.1.1 and previous versions