{"api_version":"v1","generated_at":"2026-10-10T07:10:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-arista-networks-velocloud-edge-6e70adc44765","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"VeloCloud Edge","next_cursor":null,"observations":[{"affected":"VeloCloud Edge: 1.0.0.0 < 5.2.0.0, 5.2.0.0 < 5.2.7.0, 6.1.0.0 < 6.1.5.0, 6.4.0.0 < 6.4.2.0","affected_versions_present":true,"cve_id":"CVE-2026-86106","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-86106","fixed":"The following VeloCloud Edge releases contain the fix:; - 5.2.7.0 and later in the 5.2.x train; - 6.1.5.0 and later in the 6.1.x train; - 6.4.2 and later in the 6.4.x train; - 7.0.0 and later; No hotfixes are available for this issue.","last_modified":"2026-09-16T17:53:47.977Z","patch_url":"https://www.arista.com/en/support/advisories-notices/security-advisory/24735-security-advisory-0179","primary_source":"","published":"2026-09-16T10:12:55.587Z"},{"affected":"VeloCloud Edge: 6.4.0 \u2264 6.4.1.x, 6.1.0 \u2264 6.1.4.x, 5.2.0 \u2264 5.2.6.x, 0.0.0 < 5.2.0","affected_versions_present":true,"cve_id":"CVE-2026-86109","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-86109","fixed":"Migrating to a patched software version for VeloCloud Edge is the advised course of action. Arista suggests that operators transition to the most recent release within a supported branch that incorporates the necessary remediations.","last_modified":"2026-09-17T17:40:35.095Z","patch_url":"https://www.arista.com/zh/support/advisories-notices/security-advisory/24738-security-advisory-0182","primary_source":"","published":"2026-09-16T02:57:46.285Z"},{"affected":"VeloCloud Edge: 6.4.0 \u2264 6.4.1.x, 6.1.0 \u2264 6.1.4.x, 5.2.0 \u2264 5.2.6.x, 0.0.0 < 5.2.0","affected_versions_present":true,"cve_id":"CVE-2026-86108","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-86108","fixed":"Migrating to a patched software version for VeloCloud Edge is the advised course of action. Arista suggests that operators transition to the most recent release within a supported branch that incorporates the necessary remediations.","last_modified":"2026-09-17T17:41:11.191Z","patch_url":"https://www.arista.com/zh/support/advisories-notices/security-advisory/24737-security-advisory-0181","primary_source":"","published":"2026-09-16T02:50:07.219Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Arista Networks"}}
