HPE Networking (Aruba) Product Security Advisories (CSAF text)
hpe-networking-psirt · A · candidate
https://csaf.arubanetworking.hpe.com/2026/hpe_networking_-_hpesbnw05158.txt
Added 2026-10-09 (2026-10-09T0255Z-intel): S1 candidate: first-party signed advisories for ClearPass, AOS-S, AOS-CX and the wider Aruba line (37 CVEs on 2026-10-06 alone); `url --direct` returns the full text; discovery so far only through CERT-FR and the listing URL was not located.
Cited in 2 entries
Citation cadence
Citation days per ISO week (5 weeks of coverage span, total 2).
- HPE Networking Fabric Composer and ArubaOS-CX: an unauthenticated CVSS 10.0 RCE and a CVSS 10.0 authentication bypass in the fabric-management plane, plus a CVSS 9.8 unauthenticated buffer-overflow RCE in the switch OS2026-09-04
- CVE-2026-63455 / CVE-2026-63456, HPE Aruba Networking SD-WAN Orchestrator: spoofed HTTP headers bypass REST API authentication (CVSS 9.8), with the vendor and CERT-FR scoping the affected branches differently2026-08-06