Skip to main content
See every side of every news story
Published loading...Updated

Arista patches VeloCloud Orchestrator zero-day exploited in attacks

Summary by BleepingComputer
Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being actively exploited in attacks.

7 Articles

A critical vulnerability in Arista VeloCloud Orchestrator is actively exploited. CISA puts the gap with a maximum of 10.0 on the KEV list. A critical vulnerability in local installations of the Arista VeloCloud Orchestrator (VCO) is currently actively exploited. The vulnerability is managed under the CVE-2026-16812 identifier and reaches the maximum CVSS severity of 10.0. It is an operating system command injection that allows the execution of a…

Read Full Article

The IT security agency CISA reports attacks on vulnerabilities in Fortinet FortiOS and Arista VeloCloud.

·Germany
Read Full Article
Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in Melville, United States on Monday, July 27, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal