Skip to content
Signals
NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07NVD · CVE-2026-64604 · In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest mode When updating CR8NVD · CVE-2026-64603 · In the Linux kernel, the following vulnerability has been resolved: platform/x86: intel-hid: Protect ACPI notify handler against recursion Since commit e2ffcda1NVD · CVE-2026-64602 · In the Linux kernel, the following vulnerability has been resolved: iio: adc: spear: Initialize completion before requesting IRQ In the report from Jaeyoung ChuNVD · CVE-2026-64601 · In the Linux kernel, the following vulnerability has been resolved: ALSA: us144mkii: capture_urb_complete: redundant usb_anchor_urb corrupts anchor list on eachCISA KEV · CVE-2026-63077 · 9.8 · JetBrains TeamCity Deserialization of Untrusted Data Vulnerability · Added 2026-08-05 · Due 2026-08-08CISA KEV · CVE-2026-18556 · 7.4 · N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability · Added 2026-08-04 · Due 2026-08-07

Vendors · arista

arista

· 13 Critical

Total CVEs

97

Critical

13

Products

271

Search All CVEs →

97

Products (271)

eos45 CVEsng firewall15 CVEscloudvision portal10 CVEs7500r3-24p9 CVEs7500r3-24d9 CVEs7050cx3m-32s9 CVEsw-689 CVEs7050sx3-48c89 CVEs7050sx3-48yc9 CVEs7050tx3-48c89 CVEs7050sx3-48yc129 CVEsc-759 CVEso-909 CVEs7500r3k-36cq9 CVEs7050cx3-32s9 CVEs7050sx3-48yc89 CVEs7050sx3-96yc89 CVEs7500r3-36cq9 CVEs7280sr3-48yc88 CVEsw-68 firmware8 CVEsc-658 CVEs7800r3-36p8 CVEs71308 CVEsc-65 firmware8 CVEso-90 firmware8 CVEsc-75 firmware8 CVEs7800r3-48cq8 CVEs7800r3k-48cq8 CVEs7280r38 CVEsc-2307 CVEsc-250 firmware7 CVEs7300x3-48yc47 CVEs7300x3-32c7 CVEs7280pr3-247 CVEs7280dr3-247 CVEs7280cr3-967 CVEs7280cr3-32p47 CVEs7280cr3-32d47 CVEs720xp-96zc27 CVEs720xp-48zc27 CVEs720xp-24y67 CVEs720xp-24zy47 CVEs720xp-48y67 CVEsc-2607 CVEsc-2007 CVEsc-200 firmware7 CVEsc-230 firmware7 CVEsc-260 firmware7 CVEsc-2507 CVEsc-235 firmware7 CVEsc-2357 CVEs7368x46 CVEs7050sx2-72q6 CVEs7050tx-486 CVEs7050tx-646 CVEs7050tx-72q6 CVEs7050tx2-1286 CVEs7808r36 CVEsc-1006 CVEsc-100 firmware6 CVEsc-1106 CVEsc-110 firmware6 CVEsc-1206 CVEsc-120 firmware6 CVEsc-1306 CVEsc-130 firmware6 CVEs7060cx-32s6 CVEs7060cx2-32s6 CVEs7060dx4-326 CVEs7060px4-326 CVEs7060sx2-48yc66 CVEso-105 firmware6 CVEso-1056 CVEsmetamako operating system6 CVEsw-1186 CVEs7250qx-646 CVEs7260cx6 CVEs7260cx36 CVEs7260qx6 CVEsw-118 firmware6 CVEs7050qx-32s6 CVEs7050qx2-32s6 CVEs7280r26 CVEs7050sx-1286 CVEs7280sr3k-48yc86 CVEs7050sx-646 CVEs7300x-32q6 CVEs7300x-64s6 CVEs7300x-64t6 CVEscloudeos6 CVEs7320x-32c6 CVEs7050sx-72q6 CVEs7500r26 CVEs7500r36 CVEs7050sx2-1286 CVEs7388x55 CVEs7280cr2k-605 CVEs7504r35 CVEs7170-32c5 CVEs7280cr3k-965 CVEs7260cx3-645 CVEs7280cr3k-32d45 CVEs7170-64c5 CVEs7280pr3k-245 CVEs7170-32cd5 CVEs7280dr3k-245 CVEs7280e5 CVEs7280cr3k-32p45 CVEs7508r35 CVEs7512r35 CVEs7150sc-244 CVEs7150s-644 CVEsdcs-7050cx3-32s4 CVEs7304x34 CVEs7150s-524 CVEs7812r34 CVEsccs-722xpm-48zy84 CVEsccs-722xpm-48y44 CVEs7328x4 CVEs7324x4 CVEs7816r34 CVEs7010t-484 CVEs7150s-244 CVEs7500e4 CVEsdcs-7050sx3-48yc124 CVEs7500r4 CVEs7280cr2ak-304 CVEsdcs-7050sx3-48yc84 CVEs7150sc-644 CVEsdcs-7050sx3-96yc84 CVEsdcs-7050sx3-48c84 CVEsdcs-7050cx3m-32s4 CVEs7804r34 CVEsterminattr4 CVEsdcs-7010tx-483 CVEs7020tra-483 CVEsvelocloud orchestrator3 CVEs7160-48yc63 CVEs7160-48tc63 CVEs7280r3 CVEs7160-32cq3 CVEs7130-48g3s3 CVEsdcs-7050cx3-32s-r3 CVEs7130-16g3s3 CVEs7308x33 CVEs720dt-48s3 CVEs720dt-24s3 CVEs720dp-48s3 CVEs7130-96s3 CVEs720dp-24s3 CVEs720df-48y3 CVEs7170b-64c3 CVEs7020r3 CVEs7020sr-24c23 CVEs7020sr-32c23 CVEs7020tr-483 CVEsdcs-7050tx3-48c82 CVEs7010t2 CVEs7010tx-482 CVEs7010tx-48-dc2 CVEs720dt-48y2 CVEs722xpm-48y42 CVEs722xpm-48zy82 CVEs7260qx-642 CVEs7260sx22 CVEs7280cr3-36s2 CVEs7280cr3a-24d122 CVEs7280cr3a-48d62 CVEs7280cr3a-722 CVEs7280dr3a-362 CVEs7280dr3a-542 CVEs7280dr3ak-362 CVEs7280dr3ak-542 CVEs7280dr3am-362 CVEs7280dr3am-542 CVEs7280sr3-40yc62 CVEs7280tr3-40c62 CVEs7358x42 CVEs7500r3k-48y4d2 CVEs7800r3-36d2 CVEs7800r3a-36d2 CVEs7800r3a-36dm2 CVEs7800r3a-36p2 CVEs7800r3a-36pm2 CVEs7800r3ak-36dm2 CVEs7800r3ak-36pm2 CVEs7800r3k-36dm2 CVEs7800r3k-48cqms2 CVEs7800r3k-72y7512r32 CVEsccs-710p-122 CVEsccs-710p-16p2 CVEsccs-720xp-24y62 CVEsccs-720xp-24zy42 CVEsccs-720xp-48y62 CVEsccs-720xp-48zc22 CVEsccs-720xp-96zc22 CVEsceos-lab2 CVEsdca-200-veos2 CVEsmos2 CVEsveos2 CVEsveos-lab2 CVEso90e1 CVEs7130-32lb1 CVEsvelocloud edge1 CVEsvelocloud gateway1 CVEs704x31 CVEs48lbas1 CVEs7316x1 CVEs73161 CVEsccs-750x-48thp1 CVEsccs-750x-48tp1 CVEsccs-750x-48zp1 CVEsccs-750x-48zxp1 CVEsceos1 CVEs48ehs1 CVEs7308x1 CVEscloudvision agni1 CVEscloudvision exchange1 CVEs73081 CVEs48s6qd1 CVEs7304x1 CVEs73041 CVEs7289r3am-sc1 CVEsdcs-7050cx3-32s-r firmware1 CVEs7289r3ak-sc1 CVEsdcs-7050q1 CVEsdcs-7050q eos software1 CVEsdcs-7050qx-32s-r1 CVEsdcs-7050qx-32s-r firmware1 CVEsdcs-7050s1 CVEsdcs-7050s eos software1 CVEs7289r3a-sc1 CVEs7130-96lba1 CVEs7130-96lb1 CVEs7130-96la1 CVEsdcs-7050t1 CVEsdcs-7050t eos software1 CVEs32qd1 CVEsdcs-7280sram-48c6-r1 CVEsdcs-7280sram-48c6-r firmware1 CVEsdcs-7500-12cq-lc1 CVEsdcs-7500e-12cm-lc1 CVEsdcs-7500e-36q-lc1 CVEsdcs-7500e-48s-lc1 CVEsdcs-7500e-6c2-lc1 CVEsdcs-7500e-72s-lc1 CVEsdcs-7500r-36cq-lc1 CVEsdcs-7500r-36q-lc1 CVEsdcs-7500r-48s2cq-lc1 CVEs7130-96l1 CVEsextensible operating system1 CVEs7130-48lba1 CVEs48lbs1 CVEsmultiaccess1 CVEsnetvisor os1 CVEs7130-48lb1 CVEs7130-48la1 CVEs7130-48l1 CVEs7130-48eh1 CVEsav21 CVEsaccess point1 CVEs96lbs1 CVEs758x1 CVEs755x1 CVEs7516r1 CVEs7512r1 CVEs7508r1 CVEs7504r1 CVEs7501 CVEsc75-e1 CVEs7130-32lba1 CVEs

Recent Vulnerabilities

View all 97
CVE-2026-16812CRITICAL 10.0KEV

VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator. This functionality was intended to be for internal use only and is not intended to be remotely accessible. Hosted and Dedicated versions of VCO have already been patched in advance of this notice going out. This issue was discovered externally and is known to be actively exploited.

CVE-2026-31431HIGH 7.8KEV

In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commit 72548b093ee3 except for the copying of the associated data. There is no benefit in operating in-place in algif_aead since the source and destination come from different mappings. Get rid of all the complexity added for in-place operation and just copy the AD directly.

CVE-2025-2767CRITICAL 9.6

Arista NG Firewall User-Agent Cross-Site Scripting Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Arista NG Firewall. Minimal user interaction is required to exploit this vulnerability. The specific flaw exists within the processing of the User-Agent HTTP header. The issue results from the lack of proper validation of user-supplied data, which can lead to the injection of an arbitrary script. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24407.

CVE-2024-9188HIGH 8.8

Specially constructed queries cause cross platform scripting leaking administrator tokens

CVE-2024-9134HIGH 8.3

Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

CVE-2024-9133MEDIUM 6.6

A user with administrator privileges is able to retrieve authentication tokens

CVE-2024-9132HIGH 8.1

The administrator is able to configure an insecure captive portal script

CVE-2024-9131HIGH 7.2

A user with administrator privileges can perform command injection

CVE-2024-47520HIGH 7.6

A user with advanced report application access rights can perform actions for which they are not authorized

CVE-2024-47519HIGH 8.3

Backup uploads to ETM subject to man-in-the-middle interception

CVE-2024-47518MEDIUM 6.4

Specially constructed queries targeting ETM could discover active remote access sessions

CVE-2024-47517MEDIUM 6.8

Expired and unusable administrator authentication tokens can be revealed by units that have timed out from ETM access

CVE-2024-12832MEDIUM 6.3

Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability. This vulnerability allows remote attackers to create arbitrary files and disclose sensitive information on affected installations of Arista NG Firewall. Authentication is required to exploit this vulnerability. The specific flaw exists within the ReportEntry class. The issue results from the lack of proper validation of a user-supplied string before using it to construct SQL queries. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the www-data user. Was ZDI-CAN-24325.

CVE-2024-12831HIGH 7.8

Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Arista NG Firewall. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the uvm_login module. The issue results from incorrect authorization. An attacker can leverage this to escalate privileges to resources normally protected from the user. Was ZDI-CAN-24324.

CVE-2024-12830HIGH 7.3

Arista NG Firewall custom_handler Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Arista NG Firewall. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the custom_handler method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the www-data user. Was ZDI-CAN-24019.

CVE-2024-12829HIGH 8.8

Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Arista NG Firewall. Authentication is required to exploit this vulnerability. The specific flaw exists within the ExecManagerImpl class. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24015.

CVE-2024-6387HIGH 8.1

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.

CVE-2024-27889HIGH 8.8

Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW). A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

CVE-2023-6068LOW 3.1

On affected 7130 Series FPGA platforms running MOS and recent versions of the MultiAccess FPGA, application of ACL’s may result in incorrect operation of the configured ACL for a port resulting in some packets that should be denied being permitted and some

CVE-2023-24547MEDIUM 5.9

On affected platforms running Arista MOS, the configuration of a BGP password will cause the password to be logged in clear text that can be revealed in local logs or remote logging servers by authenticated users, as well as appear in clear text in the device’s running config.

CVE-2023-3646MEDIUM 5.9

On affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error may trigger a kernel panic and cause system reload.

CVE-2023-24548MEDIUM 5.3

On affected platforms running Arista EOS with VXLAN configured, malformed or truncated packets received over a VXLAN tunnel and forwarded in hardware can cause egress ports to be unable to forward packets. The device will continue to be susceptible to the issue until remediation is in place.

CVE-2023-24546HIGH 8.1

On affected versions of the CloudVision Portal improper access controls on the connection from devices to CloudVision could enable a malicious actor with network access to CloudVision to get broader access to telemetry and configuration data within the system than intended. This advisory impacts the Arista CloudVision Portal product when run on-premise. It does not impact CloudVision as-a-Service.

CVE-2023-24510HIGH 7.5

On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.

CVE-2023-24512HIGH 8.8

On affected platforms running Arista EOS, an authorized attacker with permissions to perform gNMI requests could craft a request allowing it to update arbitrary configurations in the switch. This situation occurs only when the Streaming Telemetry Agent (referred to as the TerminAttr agent) is enabled and gNMI access is configured on the agent. Note: This gNMI over the Streaming Telemetry Agent scenario is mostly commonly used when streaming to a 3rd party system and is not used by default when streaming to CloudVision