{"schema_version":1,"title":"HPE Aruba Networking vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 27 vulnerabilities in HPE Aruba Networking: 0 in the last 7 days and 0 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-44871, was published on 12 May 2026. 3 technologies have a page of their own.","url":"https://junglewise.ai/threats/vendors/hpe-aruba-networking","json_url":"https://junglewise.ai/threats/vendors/hpe-aruba-networking.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/hpe-aruba-networking","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":24,"all_time":27,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":0,"last_365_days":27},"latest":[{"cve":"CVE-2026-44871","cvss":7.2,"slug":"cve-2026-44871-hpe-aruba-aos-command-injection-in-cli-service-via-papi-protocol","title":"HPE Aruba AOS command injection in CLI service via PAPI protocol","severity":"high","exploited":false,"published_at":"2026-05-12T22:16:37.82+00:00","url":"https://junglewise.ai/threats/cve-2026-44871-hpe-aruba-aos-command-injection-in-cli-service-via-papi-protocol"},{"cve":"CVE-2026-44874","cvss":4.9,"slug":"cve-2026-44874-hpe-aruba-aos-10-gateway-improper-access-control-in-web-interface","title":"HPE Aruba AOS-10 Gateway improper access control in web interface","severity":"medium","exploited":false,"published_at":"2026-05-12T20:16:46.02+00:00","url":"https://junglewise.ai/threats/cve-2026-44874-hpe-aruba-aos-10-gateway-improper-access-control-in-web-interface"},{"cve":"CVE-2026-44872","cvss":7.2,"slug":"cve-2026-44872-hpe-arubaos-command-injection-in-web-based-management-interface","title":"HPE ArubaOS command injection in web-based management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.793+00:00","url":"https://junglewise.ai/threats/cve-2026-44872-hpe-arubaos-command-injection-in-web-based-management-interface"},{"cve":"CVE-2026-44870","cvss":7.2,"slug":"cve-2026-44870-hpe-aruba-aos-command-injection-in-cli-service-via-papi-protocol","title":"HPE Aruba AOS command injection in CLI service via PAPI protocol","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.69+00:00","url":"https://junglewise.ai/threats/cve-2026-44870-hpe-aruba-aos-command-injection-in-cli-service-via-papi-protocol"},{"cve":"CVE-2026-44869","cvss":7.2,"slug":"cve-2026-44869-hpe-aruba-networking-aos-command-injection-in-web-management","title":"HPE Aruba Networking AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.583+00:00","url":"https://junglewise.ai/threats/cve-2026-44869-hpe-aruba-networking-aos-command-injection-in-web-management"},{"cve":"CVE-2026-44868","cvss":7.2,"slug":"cve-2026-44868-hpe-aruba-networking-aos-command-injection-in-web-management","title":"HPE Aruba Networking AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.467+00:00","url":"https://junglewise.ai/threats/cve-2026-44868-hpe-aruba-networking-aos-command-injection-in-web-management"},{"cve":"CVE-2026-44867","cvss":7.2,"slug":"cve-2026-44867-hpe-aruba-aos-command-injection-in-web-management-interface","title":"HPE Aruba AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.35+00:00","url":"https://junglewise.ai/threats/cve-2026-44867-hpe-aruba-aos-command-injection-in-web-management-interface"},{"cve":"CVE-2026-44866","cvss":7.2,"slug":"cve-2026-44866-hpe-aruba-networking-aos-command-injection-in-web-management","title":"HPE Aruba Networking AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.243+00:00","url":"https://junglewise.ai/threats/cve-2026-44866-hpe-aruba-networking-aos-command-injection-in-web-management"},{"cve":"CVE-2026-44865","cvss":7.2,"slug":"cve-2026-44865-hpe-aruba-networking-aos-command-injection-in-web-management","title":"HPE Aruba Networking AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.137+00:00","url":"https://junglewise.ai/threats/cve-2026-44865-hpe-aruba-networking-aos-command-injection-in-web-management"},{"cve":"CVE-2026-44863","cvss":7.2,"slug":"cve-2026-44863-hpe-aruba-networking-aos-sql-injection-in-management-interface","title":"HPE Aruba Networking AOS SQL injection in management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:44.923+00:00","url":"https://junglewise.ai/threats/cve-2026-44863-hpe-aruba-networking-aos-sql-injection-in-management-interface"},{"cve":"CVE-2026-44862","cvss":7.2,"slug":"cve-2026-44862-hpe-aruba-networking-aos-sql-injection-in-cli-and-management","title":"HPE Aruba Networking AOS SQL injection in CLI and management protocol","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:44.82+00:00","url":"https://junglewise.ai/threats/cve-2026-44862-hpe-aruba-networking-aos-sql-injection-in-cli-and-management"},{"cve":"CVE-2026-44860","cvss":7.2,"slug":"cve-2026-44860-hpe-aruba-networking-aos-sql-injection-in-cli-and-management","title":"HPE Aruba Networking AOS SQL injection in CLI and management protocol","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:44.62+00:00","url":"https://junglewise.ai/threats/cve-2026-44860-hpe-aruba-networking-aos-sql-injection-in-cli-and-management"},{"cve":"CVE-2026-44858","cvss":7.2,"slug":"cve-2026-44858-hpe-aruba-networking-aos-stack-overflow-in-management-cli","title":"HPE Aruba Networking AOS stack overflow in management CLI","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:44.417+00:00","url":"https://junglewise.ai/threats/cve-2026-44858-hpe-aruba-networking-aos-stack-overflow-in-management-cli"},{"cve":"CVE-2026-44857","cvss":7.2,"slug":"cve-2026-44857-hpe-aruba-networking-aos-stack-overflow-in-management-services","title":"HPE Aruba Networking AOS stack overflow in management services","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:44.317+00:00","url":"https://junglewise.ai/threats/cve-2026-44857-hpe-aruba-networking-aos-stack-overflow-in-management-services"},{"cve":"CVE-2026-44856","cvss":7.2,"slug":"cve-2026-44856-hpe-aruba-networking-aos-stack-overflow-in-management-services","title":"HPE Aruba Networking AOS stack overflow in management services","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:44.217+00:00","url":"https://junglewise.ai/threats/cve-2026-44856-hpe-aruba-networking-aos-stack-overflow-in-management-services"},{"cve":"CVE-2026-44855","cvss":7.2,"slug":"cve-2026-44855-hpe-aruba-networking-aos-stack-overflow-in-management-cli","title":"HPE Aruba Networking AOS stack overflow in management CLI","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:44.117+00:00","url":"https://junglewise.ai/threats/cve-2026-44855-hpe-aruba-networking-aos-stack-overflow-in-management-cli"},{"cve":"CVE-2026-44854","cvss":7.2,"slug":"cve-2026-44854-hpe-aruba-networking-aos-command-injection-in-web-management","title":"HPE Aruba Networking AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:44.017+00:00","url":"https://junglewise.ai/threats/cve-2026-44854-hpe-aruba-networking-aos-command-injection-in-web-management"},{"cve":"CVE-2026-44853","cvss":7.2,"slug":"cve-2026-44853-hpe-aruba-networking-aos-command-injection-in-web-management","title":"HPE Aruba Networking AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:43.913+00:00","url":"https://junglewise.ai/threats/cve-2026-44853-hpe-aruba-networking-aos-command-injection-in-web-management"},{"cve":"CVE-2026-44852","cvss":7.2,"epss":0.001,"slug":"cve-2026-44852-hpe-aruba-networking-aos-8-and-aos-10-rce-in-web-management","title":"HPE Aruba Networking AOS-8 and AOS-10 RCE in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:43.803+00:00","url":"https://junglewise.ai/threats/cve-2026-44852-hpe-aruba-networking-aos-8-and-aos-10-rce-in-web-management"},{"cve":"CVE-2026-23827","cvss":7.5,"slug":"cve-2026-23827-hpe-aruba-networking-aos-heap-overflow-in-network-management","title":"HPE Aruba Networking AOS heap overflow in Network management service","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:31.797+00:00","url":"https://junglewise.ai/threats/cve-2026-23827-hpe-aruba-networking-aos-heap-overflow-in-network-management"},{"cve":"CVE-2026-23825","cvss":7.5,"slug":"cve-2026-23825-hpe-aruba-networking-aos-improper-input-validation-in-protocol","title":"HPE Aruba Networking AOS improper input validation in protocol-handling component","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:31.573+00:00","url":"https://junglewise.ai/threats/cve-2026-23825-hpe-aruba-networking-aos-improper-input-validation-in-protocol"},{"cve":"CVE-2026-23824","cvss":7.5,"slug":"cve-2026-23824-hpe-aruba-aos-denial-of-service-in-protocol-handling-component","title":"HPE Aruba AOS denial of service in protocol-handling component","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:31.463+00:00","url":"https://junglewise.ai/threats/cve-2026-23824-hpe-aruba-aos-denial-of-service-in-protocol-handling-component"},{"cve":"CVE-2026-23823","cvss":7.2,"slug":"cve-2026-23823-hpe-aruba-aos-10-command-injection-in-cli","title":"HPE Aruba AOS-10 command injection in CLI","severity":"high","exploited":false,"published_at":"2026-05-12T19:16:29.053+00:00","url":"https://junglewise.ai/threats/cve-2026-23823-hpe-aruba-aos-10-command-injection-in-cli"},{"cve":"CVE-2026-23822","cvss":5.3,"slug":"cve-2026-23822-hpe-aruba-aos-8-xml-entity-expansion-in-dhcp-services","title":"HPE Aruba AOS-8 XML entity expansion in DHCP services","severity":"medium","exploited":false,"published_at":"2026-05-12T19:16:28.947+00:00","url":"https://junglewise.ai/threats/cve-2026-23822-hpe-aruba-aos-8-xml-entity-expansion-in-dhcp-services"},{"cve":"CVE-2026-23820","cvss":7.2,"slug":"cve-2026-23820-hpe-aruba-aos-command-injection-in-access-point-cli","title":"HPE Aruba AOS command injection in Access Point CLI","severity":"high","exploited":false,"published_at":"2026-05-12T19:16:28.73+00:00","url":"https://junglewise.ai/threats/cve-2026-23820-hpe-aruba-aos-command-injection-in-access-point-cli"}],"vendor":{"hub":true,"name":"HPE Aruba Networking","slug":"hpe-aruba-networking","homepage":"https://www.arubanetworks.com/","description":"A subsidiary of Hewlett Packard Enterprise that provides networking solutions for enterprises.","url":"https://junglewise.ai/threats/vendors/hpe-aruba-networking"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"most_severe":[{"cve":"CVE-2026-23819","cvss":8.8,"slug":"cve-2026-23819-hpe-aruba-aos-cross-site-scripting-in-web-management-interface","title":"HPE Aruba AOS Cross-Site Scripting in Web Management Interface","severity":"high","exploited":false,"published_at":"2026-05-12T19:16:28.603+00:00","url":"https://junglewise.ai/threats/cve-2026-23819-hpe-aruba-aos-cross-site-scripting-in-web-management-interface"},{"cve":"CVE-2026-23827","cvss":7.5,"slug":"cve-2026-23827-hpe-aruba-networking-aos-heap-overflow-in-network-management","title":"HPE Aruba Networking AOS heap overflow in Network management service","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:31.797+00:00","url":"https://junglewise.ai/threats/cve-2026-23827-hpe-aruba-networking-aos-heap-overflow-in-network-management"},{"cve":"CVE-2026-23825","cvss":7.5,"slug":"cve-2026-23825-hpe-aruba-networking-aos-improper-input-validation-in-protocol","title":"HPE Aruba Networking AOS improper input validation in protocol-handling component","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:31.573+00:00","url":"https://junglewise.ai/threats/cve-2026-23825-hpe-aruba-networking-aos-improper-input-validation-in-protocol"},{"cve":"CVE-2026-23824","cvss":7.5,"slug":"cve-2026-23824-hpe-aruba-aos-denial-of-service-in-protocol-handling-component","title":"HPE Aruba AOS denial of service in protocol-handling component","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:31.463+00:00","url":"https://junglewise.ai/threats/cve-2026-23824-hpe-aruba-aos-denial-of-service-in-protocol-handling-component"},{"cve":"CVE-2026-44852","cvss":7.2,"epss":0.001,"slug":"cve-2026-44852-hpe-aruba-networking-aos-8-and-aos-10-rce-in-web-management","title":"HPE Aruba Networking AOS-8 and AOS-10 RCE in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:43.803+00:00","url":"https://junglewise.ai/threats/cve-2026-44852-hpe-aruba-networking-aos-8-and-aos-10-rce-in-web-management"},{"cve":"CVE-2026-44871","cvss":7.2,"slug":"cve-2026-44871-hpe-aruba-aos-command-injection-in-cli-service-via-papi-protocol","title":"HPE Aruba AOS command injection in CLI service via PAPI protocol","severity":"high","exploited":false,"published_at":"2026-05-12T22:16:37.82+00:00","url":"https://junglewise.ai/threats/cve-2026-44871-hpe-aruba-aos-command-injection-in-cli-service-via-papi-protocol"},{"cve":"CVE-2026-44872","cvss":7.2,"slug":"cve-2026-44872-hpe-arubaos-command-injection-in-web-based-management-interface","title":"HPE ArubaOS command injection in web-based management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.793+00:00","url":"https://junglewise.ai/threats/cve-2026-44872-hpe-arubaos-command-injection-in-web-based-management-interface"},{"cve":"CVE-2026-44870","cvss":7.2,"slug":"cve-2026-44870-hpe-aruba-aos-command-injection-in-cli-service-via-papi-protocol","title":"HPE Aruba AOS command injection in CLI service via PAPI protocol","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.69+00:00","url":"https://junglewise.ai/threats/cve-2026-44870-hpe-aruba-aos-command-injection-in-cli-service-via-papi-protocol"},{"cve":"CVE-2026-44869","cvss":7.2,"slug":"cve-2026-44869-hpe-aruba-networking-aos-command-injection-in-web-management","title":"HPE Aruba Networking AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.583+00:00","url":"https://junglewise.ai/threats/cve-2026-44869-hpe-aruba-networking-aos-command-injection-in-web-management"},{"cve":"CVE-2026-44868","cvss":7.2,"slug":"cve-2026-44868-hpe-aruba-networking-aos-command-injection-in-web-management","title":"HPE Aruba Networking AOS command injection in web management interface","severity":"high","exploited":false,"published_at":"2026-05-12T20:16:45.467+00:00","url":"https://junglewise.ai/threats/cve-2026-44868-hpe-aruba-networking-aos-command-injection-in-web-management"}],"generated_at":"2026-09-26T09:11:00.170868+00:00","technologies":[{"name":"HPE Aruba Networking AOS-10","slug":"aos-10","vulnerabilities":27,"url":"https://junglewise.ai/threats/technologies/aos-10"},{"name":"HPE Aruba Networking AOS-8","slug":"aos-8","vulnerabilities":23,"url":"https://junglewise.ai/threats/technologies/aos-8"},{"name":"HPE Aruba Networking AOS-8 Instant","slug":"aos-8-instant","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/aos-8-instant"}]}