Third Party Index

SolarWinds

solarwinds.com

Transparency

Limited

Breakdown
Subprocessor listpublished; no entries could be read0 / 30
Processing locationsno list0 / 8
Purposesno list0 / 7
Data processing addendum12 / 12
Trust center8 / 8
Privacy policy6 / 6
security.txtnot found0 / 6
Security page5 / 5
Status pagenot found0 / 5
Vulnerability disclosure5 / 5
Pages still reachable8 / 8
Total44 / 100

Only documents we can retrieve count: a page behind a login or a broken link scores nothing.

Badge

SolarWinds transparency rating

For SolarWinds's own site; it updates with the rating.

<a href="https://thirdpartyindex.com/vendors/solarwinds"><img src="https://thirdpartyindex.com/badge/solarwinds.svg" alt="SolarWinds transparency rating on Third Party Index" height="20"></a>
[![SolarWinds transparency rating on Third Party Index](https://thirdpartyindex.com/badge/solarwinds.svg)](https://thirdpartyindex.com/vendors/solarwinds)

Documents

DocumentVerifiedChangedEvidence
Trust center snapshot
Subprocessor list snapshot
Data processing addendum snapshot
Privacy policy snapshot
Terms snapshot
Security page snapshot
Security advisories snapshot

Subprocessors

None extracted.

Listed as a subprocessor by (5)

Purposes as each company states them.

Security record

What public security catalogs list for SolarWinds, in their words.

Known exploited vulnerabilities

11 vulnerabilities in SolarWinds's software that CISA lists as exploited in the wild.

CVEProductVulnerabilityListed
CVE-2026-28318Serv-USolarWinds Serv-U Uncontrolled Resource Consumption Vulnerability
CVE-2025-26399Web Help DeskSolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability used by ransomware
CVE-2025-40536Web Help DeskSolarWinds Web Help Desk Security Control Bypass Vulnerability
CVE-2025-40551Web Help DeskSolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability
CVE-2024-28987Web Help DeskSolarWinds Web Help Desk Hardcoded Credential Vulnerability
CVE-2024-28986Web Help DeskSolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability
CVE-2024-28995Serv-USolarWinds Serv-U Path Traversal Vulnerability
CVE-2021-35247Serv-USolarWinds Serv-U Improper Input Validation Vulnerability
CVE-2016-3643Virtualization ManagerSolarWinds Virtualization Manager Privilege Escalation Vulnerability
CVE-2020-10148OrionSolarWinds Orion Authentication Bypass Vulnerability
1 more
CVEProductVulnerabilityListed
CVE-2021-35211Serv-USolarWinds Serv-U Remote Code Execution Vulnerability used by ransomware

Source: CISA Known Exploited Vulnerabilities catalog (evidence)

Changes

None since tracking began.