CVEs we hold for Arista
Records whose assigning authority named Arista as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-77191All of the CVEs covered in this advisory apply to affected platforms running Arista EOS with 802.1X authentication and…Arista Networks EOS
CVE-2026-75945A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued.Arista Networks EOS
CVE-2026-75944A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system. If the…Arista Networks EOS
CVE-2026-75943A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either via the…Arista Networks EOS
CVE-2026-7473Arista EOS Unexpected Tunnel Protocol Decapsulation and Forwarding BypassArista Networks EOS
CVE-2026-73467On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for configured Terminal…Arista Networks EOS
CVE-2026-73466On affected platforms running Arista EOS, under certain circumstances plaintext user passwordsArista Networks EOS
CVE-2026-73465On affected platforms running Arista EOS, under certain circumstances plaintext private keysArista Networks EOS
CVE-2026-73462On affected platforms running Arista EOS with IGMP (Internet Group Management Protocol) snooping configured (enabled by…Arista Networks EOS
CVE-2026-73458On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD) sessions…Arista Networks EOS
CVE-2026-73457Under certain circumstances, the gNPSI client credentials might be logged in clear text, in local or remote accounting…Arista Networks EOS
CVE-2026-73456Under certain circumstances, an unauthenticated gNPSI client can craft a malicious request to allow arbitrary code…Arista Networks EOS
CVE-2026-73451On affected platforms running Arista EOS with dual switch cards and with ingress Security ACLs configured on Switched…Arista Networks EOS
CVE-2026-73449On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured…Arista Networks EOS
CVE-2026-73447Security Advisory 0162 - gNSI Certz/Bootz OS Command Injection via Crafted Rotate RequestArista Networks EOS
CVE-2026-73444On affected platforms running Arista EOS with VRRPv2 IP Authentication Header (IP-AH) authentication configured, an…Arista Networks EOS
CVE-2026-73443On affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker…Arista Networks EOS
CVE-2026-73442On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged…Arista Networks EOS
CVE-2026-73437On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay configured, an…Arista Networks EOS
CVE-2026-25624Arista Edge Threat Management NGFW UI Administrative Cross-Site ScriptingArista Next Generation Firewall (NGFW)
CVE-2026-25623Arista Edge Threat Management NGFW UI Arbitrary Command ExecutionArista Next Generation Firewall (NGFW)
CVE-2026-25622Arista Edge Threat Management NGFW Captive Portal Custom Handler Command InjectionArista Next Generation Firewall (NGFW)
CVE-2026-25621Arista Edge Threat Management NGFW Reports Application Insecure Input ValidationArista Next Generation Firewall (NGFW)
CVE-2026-25620Arista Edge Threat Management NGFW Captive Portal Encrypted Password Command InjectionArista Next Generation Firewall (NGFW)
CVE-2026-2379Arista EOS IPsec Tunnel Sequence Number Mismatch via Interface Flaps when Anti-Replay is DisabledArista Networks EOS
CVE-2026-19655On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay/snooping configured with…Arista Networks EOS
CVE-2026-19641On affected platforms running Arista EOS with password authentication configured, a specially crafted password can…Arista Networks EOS
CVE-2026-17192VeloCloud Orchestrator Missing Input Validation SSRFArista Networks VeloCloud Orchestrator On-Prem
CVE-2026-17191VeloCloud Orchestrator Flow Metrics API SQL InjectionArista Networks VeloCloud Orchestrator On-Prem
CVE-2026-16812VeloCloud Orchestrator OS Command InjectionArista Networks VeloCloud Orchestrator On-Prem
CVE-2025-8872A specially crafted packet can cause the OSFPv3 process to have high CPU utilization which may result in the OSFPv3…Arista Networks EOS
CVE-2025-8870On affected platforms running Arista EOS, certain serial console input might result in an unexpected reload of the…Arista Networks EOS
CVE-2025-7048On affected platforms running Arista EOS with MACsec configuration, a specially crafted packet can cause the MACsec…Arista Networks EOS
CVE-2025-6188On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503 may be accepted by EOS.…Arista Networks EOS
CVE-2025-54549Cryptographic validation of upgrade images could be circumventing by dropping a specifically crafted file into the…Arista Networks DANZ Monitoring Fabric
CVE-2025-54548On affected platforms, restricted users could view sensitive portions of the config database via a debug API (e.g.…Arista Networks DANZ Monitoring Fabric
CVE-2025-54547On affected platforms, if SSH session multiplexing was configured on the client side, SSH sessions (e.g, scp, sftp)…Arista Networks DANZ Monitoring Fabric
CVE-2025-54546On affected platforms, restricted users could use SSH port forwarding to access host-internal servicesArista Networks DANZ Monitoring Fabric
CVE-2025-54545On affected platforms, a restricted user could break out of the CLI sandbox to the system shell and elevate their…Arista Networks DANZ Monitoring Fabric
CVE-2025-5090Arista CloudVision Exchange Cluster Instability via Unexpected Switch MessagesArista Networks EOS / CloudVision eXchange (CVX)
CVE-2025-5089Arista EOS SysDB Agent Denial of Service via Malformed CVX Client/Server MessagesArista Networks EOS / CloudVision eXchange (CVX)
CVE-2025-5088Arista CloudVision Exchange (CVX) Cluster Privilege Escalation via MCS Redis SessionArista Networks EOS / CloudVision eXchange (CVX)
CVE-2025-3456On affected platforms running Arista EOS, the global common encryption key configuration may be logged in clear text…Arista Networks EOS
CVE-2025-2826n affected platforms running Arista EOS, ACL policies may not be enforced. IPv4 ingress ACL, MAC ingress ACL, or IPv6…Arista Networks EOS
CVE-2025-2796On affected platforms with hardware IPSec support running Arista EOS with IPsec enabled and anti-replay protection…Arista Networks EOS
CVE-2025-2767Arista NG Firewall User-Agent Cross-Site Scripting Remote Code Execution VulnerabilityArista NG Firewall
CVE-2025-1260On affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when it should have been…Arista Networks EOS
CVE-2025-1259On affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when it should have been…Arista Networks EOS
CVE-2025-0936On affected platforms running Arista EOS with a gNMI transport enabled, running the gNOI File TransferToRemote RPC with…Arista Networks EOS
CVE-2025-0505On Arista CloudVision systems (virtual or physical on-premise deployments), Zero Touch Provisioning can be used to gain…Arista Networks CloudVision Portal
CVE-2024-9448On affected platforms running Arista EOS with Traffic Policies configured the vulnerability will cause received…Arista Networks EOS
CVE-2024-9188Specially constructed queries cause cross platform scripting leaking administrator tokensArista Edge Threat Management
CVE-2024-9135On affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak…Arista Networks EOS
CVE-2024-9134Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced report application…Arista Edge Threat Management
CVE-2024-9133A user with administrator privileges is able to retrieve authentication tokensArista Edge Threat Management
CVE-2024-9132The administrator is able to configure an insecure captive portal scriptArista Edge Threat Management
CVE-2024-9131A user with administrator privileges can perform command injectionArista Edge Threat Management
CVE-2024-8100On affected versions of the Arista CloudVision Portal (CVP on-prem), the time-bound device onboarding token can be used…Arista Networks CloudVision
CVE-2024-8000On affected platforms running Arista EOS with 802.1X configured, certain conditions may occur where a dynamic ACL is…Arista Networks EOS
CVE-2024-7142On Arista CloudVision Appliance (CVA) affected releases running on appliances that support hardware disk encryption…Arista Networks CloudVision Appliance
CVE-2024-7095On affected platforms running Arista EOS with SNMP configured, if “snmp-server transmit max-size” is configured, under…Arista Networks EOS
CVE-2024-6858In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there…Arista Networks EOS
CVE-2024-6437On affected platforms running Arista EOS with one of the following features configured to redirect IP traffic to a next…Arista Networks EOS - Interface Traffic Policy
CVE-2024-5872On affected platforms running Arista EOS, a specially crafted packet with incorrect VLAN tag might be copied to CPU…Arista Networks EOS
CVE-2024-47520A user with advanced report application access rights can perform actions for which they are not authorizedArista Edge Threat Management
CVE-2024-47519Backup uploads to ETM subject to man-in-the-middle interceptionArista Edge Threat Management
CVE-2024-47518Specially constructed queries targeting ETM could discover active remote access sessionsArista Edge Threat Management
CVE-2024-47517Expired and unusable administrator authentication tokens can be revealed by units that have timed out from ETM accessArista Edge Threat Management
CVE-2024-27892On affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have…Arista Networks EOS
CVE-2024-27891On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfaces, the ACL…Arista Networks EOS
CVE-2024-27890On affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have…Arista Networks EOS
CVE-2024-27889Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista…Arista NG Firewall (NGFW)
CVE-2024-12832Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write VulnerabilityArista NG Firewall
CVE-2024-12831Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation VulnerabilityArista NG Firewall
CVE-2024-12830Arista NG Firewall custom_handler Directory Traversal Remote Code Execution VulnerabilityArista NG Firewall
CVE-2024-12829Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution VulnerabilityArista NG Firewall
CVE-2024-12378On affected platforms running Arista EOS with secure Vxlan configured, restarting the Tunnelsec agent will result in…Arista Networks CloudVision Portal
CVE-2024-11186On affected versions of the CloudVision Portal, improper access controls could enable a malicious authenticated user to…Arista Networks CloudVision Portal
CVE-2024-11185On affected platforms running Arista EOS, ingress traffic on Layer 2 ports may, under certain conditions, be improperly…Arista Networks EOS
CVE-2023-6068On affected 7130 Series FPGA platforms running MOS and recent versions of the MultiAccess FPGA, application of ACL’s…Arista Networks MOS
CVE-2023-5502On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk ports, a malicious…Arista Networks EOS
CVE-2023-3646On affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error…Arista Networks EOS
CVE-2023-24548On affected platforms running Arista EOS with VXLAN configured, malformed or truncated packets received over a VXLAN…Arista Networks EOS
CVE-2023-24547On Arista MOS configuration of a BGP password will cause the password to be logged in clear text.Arista Networks MOS
CVE-2023-24545On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential…Arista Networks EOS
CVE-2023-24513On affected platforms running Arista CloudEOS a size check bypass issue in the Software Forwarding Engine (Sfe) may…Arista Networks EOS
CVE-2023-24512On affected platforms running Arista EOS, an authorized attacker with permissions to perform gNMI requests could craft…Arista Networks Terminattr
CVE-2023-24511On affected platforms running Arista EOS with SNMP configured, a specially crafted packet can cause a memory leak in…Arista Networks EOS
CVE-2023-24510On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.Arista EOS
CVE-2023-24509On affected modular platforms running Arista EOS equipped with both redundant supervisor modules and having the…Arista EOS
CVE-2022-29071This advisory documents an internally found vulnerability in the on premises deployment model of Arista CloudVision…Arista Networks CloudVision Portal
CVE-2021-28511This advisory documents the impact of an internally found vulnerability in Arista EOS for security ACL bypass. The…Arista Networks EOS
CVE-2021-28510For certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling message with an…Arista Networks EOS
CVE-2021-28509TerminAttr streams MACsec sensitive data in clear text to other authorized users in CVPArista TerminAttr
CVE-2021-28508TerminAttr streams IPsec sensitive data in clear text to other authorized users in CVPArista TerminAttr
CVE-2021-28507An issue has recently been discovered in Arista EOS where, under certain conditions, the service ACL configured for…Arista Networks EOS
CVE-2021-28506An issue has recently been discovered in Arista EOS where certain gNOI APIs incorrectly skip authorization and…Arista Networks EOS
CVE-2021-28505On affected Arista EOS platforms, if a VXLAN match rule exists in an IPv4 access-list that is applied to the ingress of…Arista Networks EOS
CVE-2021-28504On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-list has a rule which…Arista Networks EOS
CVE-2021-28503In Arista's EOS software affected releases, eAPI might skip re-evaluating user credentials when certificate based…Arista EOS
CVE-2021-28501An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and…Arista Networks Terminattr
CVE-2021-28500An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and…Arista EOS
CVE-2021-28496In Arista's EOS software affected releases, the shared secret profiles sensitive configuration might be leaked when…Arista EOS
139 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.