CVE-2026-16812
CRITICAL CISACVSS Score
N/A
Severity
CRITICAL
Source
CISA
Published
Jul 27, 2026
Description
Arista โ VeloCloud Orchestrator: Arista VeloCloud Orchestrator On-Prem contains an OS command injection vulnerability that may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator.