arista networks News Articles

Recent news articles refferecing the vendors vulnerabilities.

Arista VeloCloud CVE-2026-16812: No Password Required to Own Your Enterprise WAN

CVE-2026-16812 lets unauthenticated attackers take full control of Arista VeloCloud Orchestrator On-Prem SD-WAN deployments. CISA confirmed active exploitation July 27, 2026 and set a July 30 federal

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw

Hackers are exploiting CVE-2026-16812 in on-prem Arista VeloCloud Orchestrator, a command injection bug that may extend access to managed Edge devices

Arista patches VeloCloud Orchestrator zero-day exploited in attacks

Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being actively exploited in attacks.

No more news articles to load.