<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: Arista Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving Arista.</description><lastBuildDate>Sat, 12 Sep 2026 21:30:24 GMT</lastBuildDate><item><title>July 2026 CVE Landscape</title><link>https://recordedfuture.com/blog/july-2026-cve-landscape</link><guid isPermaLink="false">cst-4089</guid><description>Insikt Group identified 85 high-impact vulnerabilities in July 2026, representing a 44% increase from the previous month, with 36 carrying a Very Critical Risk Score. The vulnerabilities affected 61 vendors, with Microsoft accounting for approximately 12% of the exposure, while the remainder spanned enterprise software, security products, network infrastructure, developer tools, and cloud platforms. Twenty-six vulnerabilities were listed in CISA's Known Exploited Vulnerabilities catalog, 55 were reported by vendors, and four were surfaced through honeypot data, with the majority showing active exploitation or operational weaponization. Sources: Recorded Future (Insikt Group).</description><pubDate>Fri, 07 Aug 2026 00:00:00 GMT</pubDate></item><item><title>Arista patches VeloCloud Orchestrator zero-day exploited in attacks</title><link>https://bleepingcomputer.com/news/security/arista-patches-velocloud-orchestrator-zero-day-exploited-in-attacks</link><guid isPermaLink="false">cst-3306</guid><description>Arista released a patch for a maximum-severity command injection vulnerability in its on-premises VeloCloud Orchestrator product that is already being targeted by attackers. The flaw allows remote code execution on affected systems. Sources: BleepingComputer, The Hacker News, SecurityWeek.</description><pubDate>Mon, 27 Jul 2026 22:49:44 GMT</pubDate></item><item><title>CISA Adds Two Known Exploited Vulnerabilities to Catalog</title><link>https://cisa.gov/news-events/alerts/2026/07/27/cisa-adds-two-known-exploited-vulnerabilities-catalog</link><guid isPermaLink="false">cst-3298</guid><description>CISA added two vulnerabilities to its Known Exploited Vulnerabilities Catalog: CVE-2025-68686 in Fortinet FortiOS and CVE-2026-16812 in Arista VeloCloud Orchestrator, both showing active exploitation in the wild. The additions underscore CISA's continued effort to maintain a prioritized list of vulnerabilities being actively exploited, with federal agencies required under Binding Operational Directive 26-04 to prioritize patching these high-risk flaws on publicly exposed systems. Sources: CISA Alerts and Advisories.</description><pubDate>Mon, 27 Jul 2026 12:00:00 GMT</pubDate></item></channel></rss>