Vendor

Arista

As of , 3 Arista vulnerabilities are on CISA's list of exploited vulnerabilities; 3 were added in 2026. Patch first: CVE-2026-93952.

Patch first

Patch first
#VulnerabilityProductOur groupListedDeadlineEPSS
1CVE-2026-93952Improper Input ValidationArista VeloCloud OrchestratorPatch nowForensic triage required by CISA0.01
2CVE-2026-16812On-Prem OS Command InjectionArista VeloCloud OrchestratorPatch nowForensic triage required by CISA0.01
3CVE-2026-7473Incomplete Comparison with Missing FactorsArista Extensible Operating SystemPatch soon0.01

Products

  • VeloCloud Orchestrator2 entries
  • Extensible Operating System1 entry

Added each year

1232026: 332026
Entries CISA added each year, removed ones included. Source: CISA KEV.
Show the numbers
Periodentries added
20263

Used in ransomware