Mmastodon TechnologyCybersecurity first seen 2 d ago, last 2 d ago, peak #6
Critical Zero-Day Exploited in Arista VeloCloud Orchestrator
Original: (diesec.com) Critical Zero-Day Vulnerability in Arista VeloCloud Orchestrator Under Active Exploitation In brief - This
Security researchers report a critical zero-day vulnerability, tracked as CVE-2026-93952, in the Arista VeloCloud Orchestrator. The flaw allows unauthenticated attackers to access privileged functions, and it is reportedly being actively exploited in the wild. Defenders are being urged to review exposure of VeloCloud Orchestrator deployments and apply mitigations as details emerge.
Why now: Active exploitation of an unauthenticated zero-day in widely used network management software raises immediate security concerns for organisations running VeloCloud.
AristaVeloCloud OrchestratorCVE-2026-93952
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/213756