CVE Tools
Back to feed
Exploited in the wild VeloCloud Orchestrator rce Arista Networks network-edge

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw

The Hacker News·By The Hacker News··3 min read
CVE Tools coverage

A high-severity command injection vulnerability in Arista VeloCloud Orchestrator (CVE-2026-16812) is currently being actively exploited in real-world attacks. The flaw allows remote attackers to execute arbitrary code, potentially compromising the orchestrator’s systems and data. Affected versions include all on-premises deployments of VCO 5.2.x before 5.2.3.14, 6.1.x before 6.1.3.4, 6.4.x before 6.4.2.4, and 7.0.x before 7.0.0.1. Arista has issued a security advisory and recommends immediate patching or restricting access until updates can be applied.