VendorsAristavelocloud_orchestratorall versions
Vulnerabilities

Arista VeloCloud Orchestrator

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2026-16812
VeloCloud Orchestrator OS Command Injection
Published 2026-07-27 · Analyzed
10.0KEVEPSS 0.010
CVE-2026-93952
Security Advisory 0183
Published 2026-09-22 · Analyzed
10.0KEVEPSS 0.009
CVE-2020-3973
The VeloCloud Orchestrator does not apply correct input validation which allows for blind SQL-injection. A malicious actor with tenant access to Velocloud Orchestrator could enter specially crafted SQL queries and obtain data to which they are not privileged.
Published 2020-07-08 · Modified
8.8EPSS 0.011
CVE-2026-31431
crypto: algif_aead - Revert to operating out-of-place
Published 2026-04-22 · Analyzed
7.8KEVEPSS 0.034