Skip to content

CVE-2026-16812

CVE

Threat entity extracted from intelligence sources

Frequency
9
occurrences
First Seen
July 27, 2026
Last Seen
July 29, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical command injection vulnerability, CVE-2026-16812, has been discovered in the Arista VeloCloud Orchestrator On-Prem platform, allowing unauthenticated remote attackers to execute arbitrary commands. This flaw, with a CVSS score of 10.0, poses significant risks to organizations using the pla...

Fortinet's FortiOS and Arista's VeloCloud Orchestrator On-Prem are currently under attack due to critical vulnerabilities. The FortiOS vulnerability (CVE-2025-68686) allows unauthorized access to confidential information via manipulated HTTP requests, affecting versions 6.4 to 7.6. Arista's VeloClou...

Public Exploits

Checking GitHub for proof-of-concept code…