A vulnerability categorized as critical has been discovered in Apache Solr up to 9.10.1/10.0.0. The impacted element is an unknown function of the file /bin/solr of the component BasicAuth. Executing a manipulation can lead to use of hard-coded cryptographic key
.

This vulnerability is handled as CVE-2026-44825. The attack can only be done within the local network. There is not any exploit available.

It is advisable to upgrade the affected component.