CVE Tools
Back to feed
Exploited in the wild VeloCloud Orchestrator rce Arista Networks network-edge

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw

The Hacker News·By The Hacker News··3 min read
CVE Tools coverage

A high-severity command injection vulnerability in Arista VeloCloud Orchestrator (CVE-2026-16812) is currently being actively exploited in real-world attacks. The flaw allows remote attackers to execute arbitrary code, potentially compromising the orchestrator’s systems and data. Affected versions include all on-premises deployments of VCO 5.2.x before 5.2.3.14, 6.1.x before 6.1.3.4, 6.4.x before 6.4.2.4, and 7.0.x before 7.0.0.1. Arista has issued a security advisory and recommends immediate patching or restricting access until updates can be applied.

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store