arista networks News Articles

Recent news articles refferecing the vendors vulnerabilities.

Arista patches actively exploited VeloCloud Orchestrator zero-day

Arista Networks has released security patches for a zero-day flaw that is being actively exploited and affects VeloCloud Orchestrator (VCO) On-Prem deployments.

2 weeks ago

New CVSS 10.0 VeloCloud Orchestrator Flaw Actively Exploited in Certificate-Based Setups

Attackers are exploiting CVE-2026-93952 in certificate-authenticated VeloCloud Orchestrators, with some release trains still awaiting fixes.

2 weeks ago

Arista VeloCloud CVE-2026-16812: No Password Required to Own Your Enterprise WAN

CVE-2026-16812 lets unauthenticated attackers take full control of Arista VeloCloud Orchestrator On-Prem SD-WAN deployments. CISA confirmed active exploitation July 27, 2026 and set a July 30 federal

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw

Hackers are exploiting CVE-2026-16812 in on-prem Arista VeloCloud Orchestrator, a command injection bug that may extend access to managed Edge devices

Arista patches VeloCloud Orchestrator zero-day exploited in attacks

Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being actively exploited in attacks.

No more news articles to load.