high
Arista VeloCloud Orchestrator: Bypassing security controls possible
CERT-Bund (BSI) reports one vulnerability in Arista VeloCloud Orchestrator with severity high. The stated impact is bypassing security controls. The full description, affected versions and recommended action are available from CERT-Bund (BSI).
- Attack vector
- over the network
- Access needed
- none
What this means for you
A protective measure can be bypassed — login, permission checks or filters do not work as intended. Check whether the system is reachable from the internet; if so, the update takes precedence.
Original source
Insights
More articles
Weekly situation, week 38: 108 advisories, 26 critical
Between 13 Sep and 20 Sep 2026 our sources recorded 108 advisories: 26 critical, 82 high.
Weekly situation, week 37: 117 advisories, 24 critical
Between 6 Sep and 13 Sep 2026 our sources recorded 117 advisories: 24 critical, 93 high.
Weekly situation, week 36: 55 advisories, 12 critical
Between 30 Aug and 6 Sep 2026 our sources recorded 55 advisories: 12 critical, 43 high.
Contact
Reputation takes years. Destruction takes seconds.
Talk to us before somebody else does. The first conversation is free and we reply the same business day.