Vendor
Hpe vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 92 vulnerabilities in Hpe: 9 in the last 7 days and 91 in the last 90 days, 14 of them critical and 0 exploited in the wild. The most recent, CVE-2026-76717, was published on 22 September 2026. 2 technologies have a page of their own.
- Last 7 days
- 9
- Last 90 days
- 91
- Critical, all time
- 14
- Exploited in the wild
- 0
About Hpe
A multinational information technology company that provides enterprise hardware, software, and cloud services.
Hpe technologies
Latest Hpe vulnerabilities
- CVE-2026-76717: HPE Analytics and Location Engine API information disclosuremediumCVSS 5.3EPSS 0.4%
- CVE-2026-76716: HPE Analytics and Location Engine unauthorized access and denial of servicemediumCVSS 5.3EPSS 0.5%
- CVE-2026-76715: HPE Analytics and Location Engine MitM attack in administrative componenthighCVSS 7.1EPSS 0.3%
- CVE-2026-76714: HPE Analytics and Location Engine command injection in web interfacehighCVSS 7.2EPSS 0.8%
- CVE-2026-76713: HPE Analytics and Location Engine privilege escalation in maintenance restorehighCVSS 7.2EPSS 0.5%
- CVE-2026-76711: HPE Analytics and Location Engine improper socket processinghighCVSS 7.5EPSS 0.5%
- CVE-2026-76710: HPE Analytics and Location Engine information disclosure in management interfacehighCVSS 7.5EPSS 0.5%
- CVE-2026-76709: HPE Analytics and Location Engine remote write accesscriticalCVSS 9.8EPSS 0.6%
- CVE-2026-76708: HPE Analytics and Location Engine default credentialscriticalCVSS 9.8EPSS 0.6%
- CVE-2026-76707: HPE EdgeConnect SD-WAN Gateway information disclosure via memory accessmediumCVSS 4.3EPSS 0.2%
- CVE-2026-76702: HPE EdgeConnect denial of service in operating systemmediumCVSS 5.8EPSS 0.1%
- CVE-2026-76701: HPE Networking EdgeConnect information disclosure in API endpointmediumCVSS 5.9EPSS 0.4%
- CVE-2026-76699: HPE EdgeConnect SD-WAN Gateway buffer overflow in system servicemediumCVSS 6.4EPSS 0.2%
- CVE-2026-76697: HPE Networking EdgeConnect SD-WAN Gateway information disclosure in web management interfacemediumCVSS 6.5EPSS 0.4%
- CVE-2026-76696: HPE EdgeConnect SD-WAN Gateway denial of servicemediumCVSS 6.5EPSS 0.3%
- CVE-2026-76695: HPE EdgeConnect SD-WAN Gateway buffer overflow in underlying OSmediumCVSS 6.5EPSS 0.5%
- CVE-2026-76692: HPE EdgeConnect SD-WAN Gateway information disclosure and denial of servicehighCVSS 7.1EPSS 0.3%
- CVE-2026-76691: HPE Networking EdgeConnect SD-WAN Gateway buffer overflow in APIhighCVSS 7.2EPSS 0.8%
- CVE-2026-76687: HPE EdgeConnect SD-WAN Orchestrator privilege escalation in API endpointhighCVSS 7.5EPSS 0.5%
- CVE-2026-76685: HPE proxy packet processing integer overflowhighCVSS 8.1EPSS 0.7%
- CVE-2026-76683: HPE EdgeConnect SD-WAN Gateway buffer overflow in API endpointhighCVSS 8.1EPSS 0.6%
- CVE-2026-76679: HPE EdgeConnect SD-WAN denial of servicehighCVSS 8.6EPSS 0.5%
- CVE-2026-76678: HPE EdgeConnect SD-WAN Gateway API privilege escalationhighCVSS 8.8EPSS 0.6%
- CVE-2026-76677: HPE EdgeConnect privilege escalation in APIhighCVSS 8.8EPSS 0.5%
- CVE-2026-76674: HPE EdgeConnect SD-WAN Gateway buffer overflowcriticalCVSS 9.8EPSS 1.0%
Most severe Hpe vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-76658: HPE Networking Fabric Composer SSH daemon auth bypasscriticalCVSS 10EPSS 0.8%
- CVE-2026-76657: HPE Networking Fabric Composer API authentication bypasscriticalCVSS 10EPSS 0.8%
- CVE-2026-76672: HPE SD-WAN Orchestrator sensitive information disclosurecriticalCVSS 9.9EPSS 0.5%
- CVE-2026-76670: HPE EdgeConnect SD-WAN Orchestrator API privilege escalationcriticalCVSS 9.9EPSS 0.5%
- CVE-2026-76669: HPE EdgeConnect SD-WAN Orchestrator API privilege escalationcriticalCVSS 9.9EPSS 0.5%
- CVE-2026-76674: HPE EdgeConnect SD-WAN Gateway buffer overflowcriticalCVSS 9.8EPSS 1.0%
- CVE-2026-23600: HPE AutoPass License Server remote authentication bypasscriticalCVSS 9.8EPSS 1.0%
- CVE-2026-63456: HPE Networking SD-WAN Orchestrator REST API authentication bypasscriticalCVSS 9.8EPSS 0.8%
- CVE-2026-63455: HPE Networking SD-WAN Orchestrator REST API authentication bypasscriticalCVSS 9.8EPSS 0.8%
- CVE-2026-76709: HPE Analytics and Location Engine remote write accesscriticalCVSS 9.8EPSS 0.6%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 1 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 2 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 2 | 2 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 53 | 5 | |
| 7 Sep 2026 | 5 | 0 | |
| 14 Sep 2026 | 19 | 4 | |
| 21 Sep 2026 | 9 | 2 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/vendors/hpe.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Hpe vulnerabilities", https://junglewise.ai/threats/vendors/hpe, 26 September 2026.