Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2556▼ 352 respecto a la semana anterior
Críticas / altas1335▲ 66 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)93▼ 434 respecto a la semana anterior
1416 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Alta (8.1) | 0.28% | — | Apache PolarisAI | 29/9/2026 | 1/10/2026 | Apache Polaris allows an authenticated principal with permission to create or update Iceberg table properties to set FileIO client settings such as s3.endpoint in table metadata. In versions < 1.8.0, when Polaris performs server-side Iceberg operations, including commits and purges, it may use those settings to… | |
| Analizada | Crítica (9.5) | 1.1% | ⚠ Explotación activa | Arista Velocloud Orchestrator | 22/9/2026 | 23/9/2026 | VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator.… | |
| Pendiente de análisis | Alta (7.1) | 0.28% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | On affected platforms running Arista EOS with IGMP (Internet Group Management Protocol) snooping configured (enabled by default on all VLANs), a network-adjacent unauthenticated attacker can send malformed network packets on an affected VLAN to cause the IGMP snooping agent to terminate unexpectedly. This results in a… | |
| Pendiente de análisis | Media (6) | 0.32% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, the gNPSI client credentials might be logged in clear text in local or remote accounting logs to authenticated users. | |
| Pendiente de análisis | Crítica (9.2) | 0.69% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, an unauthenticated gNPSI client can craft a malicious request to allow arbitrary code execution, granting an attacker full administrative control over the compromised switch. | |
| Pendiente de análisis | Media (5.3) | 0.27% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | On affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker within the same layer 2 network segment on which VRRP is running can capture a legitimate authenticated VRRP advertisement and replay it indefinitely. Replayed advertisements can be used to advertise stale… | |
| Pendiente de análisis | Baja (2.1) | 0.21% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged in cleartext on the switch, allowing an authenticated user with sufficient privileges to view agent trace logs (or a system receiving forwarded log output) to obtain the peer device VRRP… | |
| Pendiente de análisis | Media (6) | 0.28% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS, an unauthenticated attacker who is network-adjacent to the switch and able to connect to a device with PIM Sparse Mode and MLAG configured, can send malformed messages that cause the Pimsm agent to terminate unexpectedly. The Pimsm agent is automatically restarted, but… | |
| Pendiente de análisis | Media (6.9) | 0.29% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | When specific platforms are using Arista EOS with a loose Unicast Reverse Path Forwarding (uRPF) configuration, certain traffic may not be subjected to the intended verification drop. Consequently, traffic that should be dropped based on these routes could still be processed and forwarded by the device. This issue was… | |
| Pendiente de análisis | Alta (8.9) | 0.50% | — | Arista EOSAIOpen Shortest Path First Ospfv3AI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, a specially crafted packet can cause the OSPFv3 agent to restart unexpectedly. | |
| Pendiente de análisis | Crítica (9.5) | 0.69% | — | Arista EOSAIP4runtimeAI | 16/9/2026 | 17/9/2026 | An unauthenticated P4Runtime (Programming Protocol-Independent Packet Processors Runtime) client can achieve arbitrary code execution under certain conditions on affected platforms running Arista EOS configured with P4Runtime. P4Runtime is disabled by default in Arista EOS. By crafting a malicious packet during the… | |
| Pendiente de análisis | Baja (2.3) | 0.27% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS with Simple Network Management Protocol (SNMP) configured, SNMPv3 local or remote user credentials may be exposed as a one-way hashed, localized key value within the device's running and sanitized configurations. An authenticated user who gains access to this sensitive… | |
| Pendiente de análisis | Alta (7) | 0.25% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, an unauthenticated attacker on the same OSPFv3 broadcast domain can send a specially crafted set of packets that can cause the Ospf3 agent to restart unexpectedly. The crash results in the loss of all OSPFv3… | |
| Pendiente de análisis | Media (6) | 0.27% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS with OSPFv2 and OSPFv2 segment routing configured, a specially crafted OSPFv2 packet from an adjacent OSPF neighbor may cause OSPF to restart unexpectedly. | |
| Pendiente de análisis | Alta (7) | 0.19% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS with Open Shortest Path First version 2 (OSPFv2) configured, a specially crafted OSPFv2 packet from an unauthenticated attacker on the same broadcast segment, with OSPFv2 authentication configured can cause adjacency flapping and packet loss. The disruption can affect routing… | |
| Pendiente de análisis | Baja (2.3) | 0.19% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS, an authenticated user with access to the gNMI (gRPC Network Management Interface) may receive incorrect authorization results, potentially allowing access beyond their currently assigned permissions. This issue was discovered internally by Arista and the company is not aware… | |
| Pendiente de análisis | Alta (8.7) | 0.64% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | On affected platforms running Arista EOS with gRPC Network Management Interface (gNMI) enabled, a specially crafted request could allow a malicious authenticated client with gRPC Network Management Interface (gNMI) access to execute arbitrary code with root privileges on the switch. | |
| Pendiente de análisis | Media (6) | 0.21% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS, when multiple gRPC Network Security Interface (gNSI) transports are configured, a race condition in the gNSI Authz service may cause a policy rotation to fail silently. An authenticated user whose access was revoked by the new policy may retain unauthorized access to gRPC… | |
| Pendiente de análisis | Crítica (9.4) | 0.39% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | On affected EOS platforms with AAA-based gRPC authorization enabled for OpenConfig, gRPC requests of an authenticated user to OpenConfig may use the wrong privilege level, resulting in an authorization using the wrong AAA method list. This does not impact non-gRPC OpenConfig requests such as NETCONF. | |
| Pendiente de análisis | Alta (8.6) | 0.39% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | On affected platforms running Arista EOS with gRPC Network Security Interface (gNSI) Credentialz configured, a specially crafted request can cause unintended modifications to the target account's properties. This may result in the account being assigned elevated privileges or access beyond what an administrator… | |
| Pendiente de análisis | Media (6.9) | 0.35% | — | Arista EOSAI | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS, an issue with the gRPC Network Security Interface (gNSI) Authz Rotate RPC may cause an incorrect Authz policy which was uploaded in the ongoing RPC stream to become active. This does not affect Bootz. This issue was discovered internally by Arista and the company is not aware… | |
| Pendiente de análisis | Alta (7.7) | 0.36% | — | Arista EOSAIOpenconfigAIGoogle GnmiAIGoogle Gnsi PathzAI | 16/9/2026 | 17/9/2026 | On affected platforms running Arista EOS, if OpenConfig is configured and running a gNMI server on the system, and if gNSI Pathz is configured and a gNSI Pathz policy is present on the system, then gNMI may fail to correctly enforce the rules in this policy if both a group rule and a user rule for the same path is… | |
| Pendiente de análisis | Media (5.1) | 0.25% | — | Arista EOSAIOpenconfig GnmiAIOpenconfig GnsiAIOpenconfig RestconfAI+1 | 16/9/2026 | 16/9/2026 | On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sensitive requests and responses may be unintentionally logged. These may be stored on the local EOS device or recorded on remote accounting servers. Note that gRPC-based streaming via Streaming… | |
| Pendiente de análisis | Crítica (9.4) | 0.70% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | A privileged attacker can exploit certain operation to execute arbitrary commands with root privileges, leading to full device compromise. An authenticated user can exploit gRPC Network Security Interface (gNSI) Certz service on Arista EOS-based products to escalate privileges and execute arbitrary OS commands via a… | |
| Pendiente de análisis | Alta (7) | 0.16% | — | Arista EOSAI | 16/9/2026 | 17/9/2026 | On affected platforms running Arista EOS with MLAG Dual Primary Detection configured, an unauthenticated attacker with access to the Dual Primary Detection network segment can send specially crafted packets to interfere with the dual-primary state. If the MLAG primary switch fails while these packets are present, the… |