{"api_version":"v1","generated_at":"2026-10-10T07:00:00+00:00","product":{"cve_count":46,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-hewlett-packard-enterprise-hpe-aos-cx-02aad1d83b65","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"AOS-CX","next_cursor":null,"observations":[{"affected":"AOS-CX: 10.18.0000 \u2264 10.18.0001, 10.17.0000 \u2264 10.17.1021, 10.16.0000 \u2264 10.16.1051, 10.13.0000 \u2264 10.13.1180, 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73783","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73783","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T12:32:26.868Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:29:01.155Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73782","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73782","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:55:50.337Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:59.646Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73781","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73781","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:55:51.736Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:58.139Z"},{"affected":"AOS-CX: 10.18.0000 \u2264 10.18.0001, 10.17.0000 \u2264 10.17.1021, 10.16.0000 \u2264 10.16.1051, 10.13.0000 \u2264 10.13.1180, 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73780","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73780","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:55:48.936Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:56.542Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73779","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73779","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:55:53.178Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:55.164Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73778","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73778","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:22.179Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:53.496Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73777","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73777","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:55:54.637Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:51.978Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73776","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73776","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T16:32:15.185Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:50.551Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73775","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73775","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T14:11:33.533Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:44.155Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73774","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73774","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T12:44:11.319Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:42.765Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73773","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73773","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T15:40:47.628Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:41.344Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73772","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73772","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T12:44:46.104Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:40.011Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73771","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73771","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:20.795Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:33.120Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73770","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73770","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:02.349Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:31.725Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73768","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73768","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:00.839Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:29.900Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73767","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73767","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:55:58.617Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:28.337Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73766","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73766","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T15:17:47.715Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:26.771Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73765","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73765","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:55:59.697Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:25.206Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73764","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73764","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T13:30:47.172Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:23.792Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73763","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73763","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:19.243Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:22.383Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73762","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73762","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T13:26:17.807Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:20.954Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73761","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73761","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T15:39:08.916Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:19.500Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73760","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73760","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T13:53:39.022Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:18.139Z"},{"affected":"AOS-CX: 10.18.0000 \u2264 10.18.0001, 10.17.0000 \u2264 10.17.1021, 10.16.0000 \u2264 10.16.1051, 10.13.0000 \u2264 10.13.1180, 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73759","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73759","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T13:54:46.447Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:16.173Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73758","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73758","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:17.757Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:14.391Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73757","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73757","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T13:56:10.627Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:12.964Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73756","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73756","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T15:38:27.980Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:11.651Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73755","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73755","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:16.667Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:10.325Z"},{"affected":"10.18.0000 \u2264 10.18.0001; 10.17.0000 \u2264 10.17.1021; 10.16.0000 \u2264 10.16.1051; 10.13.0000 \u2264 10.13.1180; 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73754","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73754","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-02T15:36:36.298Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:08.838Z"},{"affected":"AOS-CX: 10.18.0000 \u2264 10.18.0001, 10.17.0000 \u2264 10.17.1021, 10.16.0000 \u2264 10.16.1051, 10.13.0000 \u2264 10.13.1180, 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73753","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73753","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:15.600Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:07.381Z"},{"affected":"AOS-CX: 10.18.0000 \u2264 10.18.0001, 10.17.0000 \u2264 10.17.1021, 10.16.0000 \u2264 10.16.1051, 10.13.0000 \u2264 10.13.1180, 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73752","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73752","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:14.418Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:06.069Z"},{"affected":"AOS-CX: 10.18.0000 \u2264 10.18.0001, 10.17.0000 \u2264 10.17.1021, 10.16.0000 \u2264 10.16.1051, 10.13.0000 \u2264 10.13.1180, 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73751","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73751","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T14:12:27.924Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:04.573Z"},{"affected":"AOS-CX: 10.18.0000 \u2264 10.18.0001, 10.17.0000 \u2264 10.17.1021, 10.16.0000 \u2264 10.16.1051, 10.13.0000 \u2264 10.13.1180, 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73750","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73750","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:12.217Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:02.896Z"},{"affected":"AOS-CX: 10.18.0000 \u2264 10.18.0001, 10.17.0000 \u2264 10.17.1021, 10.16.0000 \u2264 10.16.1051, 10.13.0000 \u2264 10.13.1180, 10.10.0000 \u2264 10.10.1180","affected_versions_present":true,"cve_id":"CVE-2026-73749","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-73749","fixed":"In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): - AOS-CX 10.10.1181 and above - AOS-CX 10.13.1190 and above - AOS-CX 10.16.1060 and above - AOS-CX 10.17.1030 and above - AOS-CX 10.18.1002 and above Software versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.","last_modified":"2026-09-03T03:56:11.075Z","patch_url":"https://csaf.arubanetworking.hpe.com/","primary_source":"","published":"2026-09-01T20:28:01.576Z"},{"affected":"10.17.0000 \u2264 10.17.1020; 10.16.0000 \u2264 10.16.1050; 10.13.0000 \u2264 10.13.1180; 10.18.0000 < 10.18.0001","affected_versions_present":true,"cve_id":"CVE-2026-63454","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-63454","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.18.xxxx: AOS-CX 10.18.0001 and above - AOS-CX 10.17.xxxx: AOS-CX 10.17.1021 and above - AOS-CX 10.16.xxxx: AOS-CX 10.16.1050 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1180 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ NOTE: CVE-2026-63454 is resolved in AOS-CX 10.13.1190. Customers running this software branch that are unable to upgrade to a newer software branch are advised to use the available workaround until this resolved version becomes publicly available. HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-07-24T03:55:52.403Z","patch_url":"https://csaf.arubanetworking.hpe.com/2026/hpe_aruba_networking_-_hpesbnw05081.json","primary_source":"","published":"2026-07-21T18:02:25.136Z"},{"affected":"10.17.0000 \u2264 10.17.1020; 10.16.0000 \u2264 10.16.1050; 10.13.0000 \u2264 10.13.1170; 10.18.0000 < 10.18.0001","affected_versions_present":true,"cve_id":"CVE-2026-63453","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-63453","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.18.xxxx: AOS-CX 10.18.0001 and above - AOS-CX 10.17.xxxx: AOS-CX 10.17.1021 and above - AOS-CX 10.16.xxxx: AOS-CX 10.16.1050 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1180 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-07-24T03:55:51.615Z","patch_url":"https://csaf.arubanetworking.hpe.com/2026/hpe_aruba_networking_-_hpesbnw05081.json","primary_source":"","published":"2026-07-21T18:02:19.929Z"},{"affected":"10.17.0000 \u2264 10.17.1020; 10.16.0000 \u2264 10.16.1050; 10.13.0000 \u2264 10.13.1170; 10.18.0000 < 10.18.0001","affected_versions_present":true,"cve_id":"CVE-2026-44880","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-44880","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.18.xxxx: AOS-CX 10.18.0001 and above - AOS-CX 10.17.xxxx: AOS-CX 10.17.1021 and above - AOS-CX 10.16.xxxx: AOS-CX 10.16.1050 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1180 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-07-24T03:55:50.739Z","patch_url":"https://csaf.arubanetworking.hpe.com/2026/hpe_aruba_networking_-_hpesbnw05081.json","primary_source":"","published":"2026-07-21T18:01:52.885Z"},{"affected":"10.17.0000 \u2264 10.17.0001; 10.16.0000 \u2264 10.16.1020; 10.13.0000 \u2264 10.13.1101; 10.10.0000 \u2264 10.10.1170","affected_versions_present":true,"cve_id":"CVE-2026-23817","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-23817","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.17.xxxx: AOS-CX 10.17.1001 and above - AOS-CX 10.16.xxxx: AOS-CX 10.16.1030 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1161 and above - AOS-CX 10.10.xxxx: AOS-CX 10.10.1180 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-03-11T15:45:06.318Z","patch_url":"https://networkingsupport.hpe.com/globalsearch#tab=Software","primary_source":"","published":"2026-03-11T03:14:18.534Z"},{"affected":"AOS-CX: 10.17.0000 \u2264 10.17.0001, 10.16.0000 \u2264 10.16.1020, 10.13.0000 \u2264 10.13.1101, 10.10.0000 \u2264 10.10.1170","affected_versions_present":true,"cve_id":"CVE-2026-23816","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-23816","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.17.xxxx: AOS-CX 10.17.1001 and above - AOS-CX 10.16.xxxx: AOS-CX 10.16.1030 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1161 and above - AOS-CX 10.10.xxxx: AOS-CX 10.10.1180 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-03-11T15:43:49.752Z","patch_url":"https://networkingsupport.hpe.com/globalsearch#tab=Software","primary_source":"","published":"2026-03-11T03:13:25.324Z"},{"affected":"AOS-CX: 10.17.0000 \u2264 10.17.0001, 10.16.0000 \u2264 10.16.1020, 10.13.0000 \u2264 10.13.1101, 10.10.0000 \u2264 10.10.1170","affected_versions_present":true,"cve_id":"CVE-2026-23815","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-23815","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.17.xxxx: AOS-CX 10.17.1001 and above - AOS-CX 10.16.xxxx: AOS-CX 10.16.1030 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1161 and above - AOS-CX 10.10.xxxx: AOS-CX 10.10.1180 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-03-12T03:55:19.327Z","patch_url":"https://networkingsupport.hpe.com/globalsearch#tab=Software","primary_source":"","published":"2026-03-11T03:12:29.772Z"},{"affected":"AOS-CX: 10.17.0000 \u2264 10.17.0001, 10.16.0000 \u2264 10.16.1020, 10.13.0000 \u2264 10.13.1101, 10.10.0000 \u2264 10.10.1170","affected_versions_present":true,"cve_id":"CVE-2026-23814","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-23814","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.17.xxxx: AOS-CX 10.17.1001 and above - AOS-CX 10.16.xxxx: AOS-CX 10.16.1030 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1161 and above - AOS-CX 10.10.xxxx: AOS-CX 10.10.1180 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-03-12T13:26:04.244Z","patch_url":"https://networkingsupport.hpe.com/globalsearch#tab=Software","primary_source":"","published":"2026-03-11T03:11:34.003Z"},{"affected":"AOS-CX: 10.17.0000 \u2264 10.17.0001, 10.16.0000 \u2264 10.16.1020, 10.13.0000 \u2264 10.13.1160, 10.10.0000 \u2264 10.10.1170","affected_versions_present":true,"cve_id":"CVE-2026-23813","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-23813","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.17.xxxx: AOS-CX 10.17.1001 and above - AOS-CX 10.16.xxxx: AOS-CX 10.16.1030 and above - AOS-CX 10.13.xxxx: AOS-CX 10.13.1161 and above - AOS-CX 10.10.xxxx: AOS-CX 10.10.1180 and above Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch software branches that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking End of Life policy please visit: https://www.hpe.com/psnow/doc/a00143052enw","last_modified":"2026-03-30T15:46:11.068Z","patch_url":"https://networkingsupport.hpe.com/globalsearch#tab=Software","primary_source":"","published":"2026-03-11T03:08:43.421Z"},{"affected":"10.10.0000 \u2264 <=10.10.1140; 10.13.0000 \u2264 <=10.13.1070; 10.14.0000 \u2264 <=10.14.1030; 10.15.0000 \u2264 <=10.15.1000","affected_versions_present":true,"cve_id":"CVE-2025-27080","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-27080","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Aruba Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.15.1001 - AOS-CX 10.14.1040 - AOS-CX 10.13.1080 - AOS-CX 10.10.1150 Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/","last_modified":"2025-03-18T19:32:15.822Z","patch_url":"https://csaf.arubanetworking.hpe.com/2025/hpe_aruba_networking_-_hpesbnw04818.json","primary_source":"","published":"2025-03-18T19:02:30.151Z"},{"affected":"10.10.0000 \u2264 <=10.10.1140; 10.13.0000 \u2264 <=10.13.1070; 10.14.0000 \u2264 <=10.14.1030; 10.15.0000 \u2264 <=10.15.1000","affected_versions_present":true,"cve_id":"CVE-2025-25042","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-25042","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Aruba Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.15.1001 - AOS-CX 10.14.1040 - AOS-CX 10.13.1080 - AOS-CX 10.10.1150 Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/","last_modified":"2025-03-18T19:27:35.020Z","patch_url":"https://csaf.arubanetworking.hpe.com/2025/hpe_aruba_networking_-_hpesbnw04818.json","primary_source":"","published":"2025-03-18T19:02:02.192Z"},{"affected":"AOS-CX: 10.14.0000 \u2264 <=10.14.1040, 10.15.0000 \u2264 <=10.15.1000","affected_versions_present":true,"cve_id":"CVE-2025-25040","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-25040","fixed":"To address the vulnerabilities described above in the affected software branches, it is recommended to upgrade HPE Aruba Networking AOS-CX to one of the following versions (as applicable): - AOS-CX 10.15.1001 - AOS-CX 10.14.1040 - AOS-CX 10.13.1080 - AOS-CX 10.10.1150 Software versions with resolution/fixes for the vulnerabilities covered above can be downloaded from the HPE Networking Support Portal at https://networkingsupport.hpe.com/home/","last_modified":"2025-03-18T19:24:02.485Z","patch_url":"https://csaf.arubanetworking.hpe.com/2025/hpe_aruba_networking_-_hpesbnw04818.json","primary_source":"","published":"2025-03-18T18:59:54.510Z"},{"affected":"AOS-CX: Version 10.10.0000: 10.10.1140 and below \u2264 <=10.10.1140, Version 10.13.0000: 10.13.1060 and below \u2264 <=10.13.1060, Version 10.14.0000: 10.14.1020 and below \u2264 <=10.14.1020, Version 10.15.0000: 10.15.0005 and below \u2264 <=10.15.0005","affected_versions_present":true,"cve_id":"CVE-2024-54010","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-54010","fixed":"Upgrade affected HPE Aruba Networking CX 10000 Series switches to one of the following HPE Aruba Networking CX Operating System branches and versions (as applicable) to resolve the vulnerability described in the details section: - AOS-CX 10.15.xxxx: 10.15.1000 and above - AOS-CX 10.14.xxxx: 10.14.1030 and above - AOS-CX 10.13.xxxx: 10.13.1070 and above Note: AOS-CX 10.10.xxxx will not receive fixes for this vulnerability due to regression complications. Upgrading to AOS-CX 10.13.1070 and above will address it. Software versions with resolution/fixes for the vulnerability covered above, can be downloaded from the HPE Networking Support Portal. https://networkingsupport.hpe.com/home/ HPE Aruba Networking does not evaluate or patch product versions that have reached their End of Maintenance (EoM) milestone. For more information about HPE Aruba Networking product's End of Support policy, visit the HPE Networking Support Portal at https://networkingsupport.hpe.com/ Following are the supported HPE Aruba Networking CX Operating System software branches for the CX 10000 series switches as of the publication date of this advisory: - AOS-CX 10.15.xxxx - AOS-CX 10.14.xxxx - AOS-CX 10.13.xxxx - AOS-CX 10.10.xxxx","last_modified":"2025-01-31T17:57:52.529Z","patch_url":"https://csaf.arubanetworking.hpe.com/2025/hpe_aruba_networking_-_hpesbnw04772.json","primary_source":"","published":"2025-01-08T20:42:21.216Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Hewlett Packard Enterprise (HPE)"}}
