Can someone from the SolarWinds team please contact me directly, or provide information on how I can disclose a vulnerability within SolarWinds NPM.
You might be better off speaking directly with your account manager or raising a ticket via the Customer Portal. I'm not sure anyone would want to discuss something of that nature on a public forum.
We dont have an account manager, and I wont be disclosing it here. I merely would like contact information to take this offline.
If your concern is regarding NPM you could try sending a message to cobrien
Thanks, i've sent a PM.
I'm sure there is a set process for disclosure, it's just not showing on the site.
I suspect it would go to the Dev team along with bugs etc, but I would normally only deal with them via a support ticket raised in the customer portal.
I've responded to your PM. Thanks for helping us make our customers more secure. For posterity's sake, here's the info online: SolarWinds - Security Information