← Back to feed
Vulnerabilities & PatchesEmerging1 sourceSep 24, 2026 · 13:35via CSO Online

On-prem VeloCloud Orchestrator under attack, only some versions patched

Brief

A flaw in VeloCloud Orchestrator enables attackers to access the platform organizations use to manage their VeloCloud SD-WAN subscriptions and the edge devices it controls.

Arista, which now owns the VeloCloud business, warned customers that a vulnerable configuration exists in on-premises VeloCloud Orchestrator deployments that remote attackers may abuse to access “privileged internal functionality” and impact the VSO host. The flaw also affected Arista’s Hosted and Dedicated VCO deployments, but the company has now patched them.

“This issue was discovered externally and is known to be actively exploited,” Arista said in its advisory , urging customers to upgrade to a patched release of VCO immediately — although fixes are currently available only for some of the affected versions.

Read more on CSO Online→