hpe
Latest CVEs
The 15 most recently published vulnerabilities affecting hpe.
- CVE-2026-23818Open Redirect Vulnerability in HPE Aruba Networking Private 5G Core On-Prem8.8
- CVE-2026-23817Unauthenticated Open Redirect allows URL Manipulation in Web Interface6.5
- CVE-2026-23598Unauthenticated Information Disclosure in application API allows sensitive system information exposure6.5
- CVE-2026-23597Unauthenticated Information Disclosure in application API allows sensitive system information exposure6.5
- CVE-2026-23596Unauthenticated Improper Access Control in management API allows unauthorized service disruption6.5
- CVE-2026-23595Unauthenticated Authentication Bypass in application API allows unauthorized administrative account creation8.8
- CVE-2025-37164A remote code execution issue exists in HPE OneView.KEV10.0
- CVE-2025-37160Authenticated Broken Access Control (BAC) in REST API Configuration Service5.3
- CVE-2025-37159Authenticated Session Hijacking Allows Unauthorized Access in Network Switching Software5.8
- CVE-2025-37158Authenticated Command Injection allows Unauthorized Command Execution in AOS-CX6.7
- CVE-2025-37157Authenticated Command Injection allows Unauthorized Command Execution in AOS-CX6.7
- CVE-2025-37156ArubaOS-CX Platform-Level Denial-of-Service Vulnerability6.8
- CVE-2025-37155Authenticated Privilege Escalation Allows Unauthorized Access in Network Management Interface7.8
- CVE-2025-37107An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18.7.3
- CVE-2025-37106An authentication bypass and disclosure of information vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.18.7.3