Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2026-25624 |
|
Cross-Site Scripting (XSS) in arista (CVE-2026-25624)
cross-site scripting in arista (CVE-2026-25624). Confidential information can be exposed externally.
|
| CVE-2026-25620 |
|
OS Command Injection in arista (CVE-2026-25620)
OS command injection in arista (CVE-2026-25620). Confidential information can be exposed externally.
|
| CVE-2026-25621 |
|
OS Command Injection in arista (CVE-2026-25621)
OS command injection in arista (CVE-2026-25621). Confidential information can be exposed externally.
|
| CVE-2026-25622 |
|
OS Command Injection in arista (CVE-2026-25622)
OS command injection in arista (CVE-2026-25622). Confidential information can be exposed externally.
|
| CVE-2026-25623 |
|
OS Command Injection in arista (CVE-2026-25623)
OS command injection in arista (CVE-2026-25623). Confidential information can be exposed externally.
|
| CVE-2026-7473 KEV |
|
[KEV] Vulnerability in Arista eos (CVE-2026-7473)
vulnerability in Arista eos (CVE-2026-7473). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2026-31431 KEV |
|
[KEV] Vulnerability in Linux redhat (CVE-2026-31431)
vulnerability in Linux redhat (CVE-2026-31431). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2024-6387 |
|
Vulnerability in sonicwall (CVE-2024-6387)
vulnerability in sonicwall (CVE-2024-6387). Successful exploitation can lead to full system takeover.
|
| CVE-2020-26146 |
|
Vulnerability in platform/vendor/qcom-opensource/wlan/qca-wifi-host-cmn (CVE-2020-26146)
vulnerability in platform/vendor/qcom-opensource/wlan/qca-wifi-host-cmn (CVE-2020-26146). Data can be tampered with by attackers. Mitigation: upgrade to `SoCVersion:2021-10-05` or later.
|
| CVE-2017-14491 |
|
Out-of-Bounds Write in platform/external/dnsmasq (CVE-2017-14491)
out-of-bounds write in platform/external/dnsmasq (CVE-2017-14491). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `11:2021-03-01` or later.
|
| CVE-2016-9012 |
|
Vulnerability in arista (CVE-2016-9012)
vulnerability in arista (CVE-2016-9012). Successful exploitation can lead to full system takeover.
|