{"schema_version":1,"title":"Hpe vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 92 vulnerabilities in Hpe: 9 in the last 7 days and 91 in the last 90 days, 14 of them critical and 0 exploited in the wild. The most recent, CVE-2026-76717, was published on 22 September 2026. 2 technologies have a page of their own.","url":"https://junglewise.ai/threats/vendors/hpe","json_url":"https://junglewise.ai/threats/vendors/hpe.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/hpe","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":42,"all_time":92,"critical":14,"exploited":0,"last_7_days":9,"last_30_days":86,"last_90_days":91,"last_365_days":92},"latest":[{"cve":"CVE-2026-76717","cvss":5.3,"epss":0.0042,"slug":"cve-2026-76717-a-vulnerability-exists-in-the-analytics-and-location-engine-ale","title":"HPE Analytics and Location Engine API information disclosure","severity":"medium","exploited":false,"published_at":"2026-09-22T20:17:07.723+00:00","url":"https://junglewise.ai/threats/cve-2026-76717-a-vulnerability-exists-in-the-analytics-and-location-engine-ale"},{"cve":"CVE-2026-76716","cvss":5.3,"epss":0.0051,"slug":"cve-2026-76716-multiple-vulnerabilities-exist-in-the-analytics-and-location","title":"HPE Analytics and Location Engine unauthorized access and denial of service","severity":"medium","exploited":false,"published_at":"2026-09-22T20:17:07.607+00:00","url":"https://junglewise.ai/threats/cve-2026-76716-multiple-vulnerabilities-exist-in-the-analytics-and-location"},{"cve":"CVE-2026-76715","cvss":7.1,"epss":0.0026,"slug":"cve-2026-76715-a-vulnerability-in-an-administrative-component-of-analytics-and","title":"HPE Analytics and Location Engine MitM attack in administrative component","severity":"high","exploited":false,"published_at":"2026-09-22T20:17:07.48+00:00","url":"https://junglewise.ai/threats/cve-2026-76715-a-vulnerability-in-an-administrative-component-of-analytics-and"},{"cve":"CVE-2026-76714","cvss":7.2,"epss":0.0084,"slug":"cve-2026-76714-vulnerabilities-in-the-analytics-and-location-engine-web","title":"HPE Analytics and Location Engine command injection in web interface","severity":"high","exploited":false,"published_at":"2026-09-22T20:17:07.36+00:00","url":"https://junglewise.ai/threats/cve-2026-76714-vulnerabilities-in-the-analytics-and-location-engine-web"},{"cve":"CVE-2026-76713","cvss":7.2,"epss":0.0055,"slug":"cve-2026-76713-a-vulnerability-exists-in-the-maintenance-restore-functionality","title":"HPE Analytics and Location Engine privilege escalation in maintenance restore","severity":"high","exploited":false,"published_at":"2026-09-22T20:17:07.237+00:00","url":"https://junglewise.ai/threats/cve-2026-76713-a-vulnerability-exists-in-the-maintenance-restore-functionality"},{"cve":"CVE-2026-76711","cvss":7.5,"epss":0.0047,"slug":"cve-2026-76711-a-vulnerability-exists-in-an-analytics-and-location-engine-ale","title":"HPE Analytics and Location Engine improper socket processing","severity":"high","exploited":false,"published_at":"2026-09-22T20:17:06.973+00:00","url":"https://junglewise.ai/threats/cve-2026-76711-a-vulnerability-exists-in-an-analytics-and-location-engine-ale"},{"cve":"CVE-2026-76710","cvss":7.5,"epss":0.0054,"slug":"cve-2026-76710-a-vulnerability-exists-in-the-analytics-and-location-engine-ale","title":"HPE Analytics and Location Engine information disclosure in management interface","severity":"high","exploited":false,"published_at":"2026-09-22T20:17:06.867+00:00","url":"https://junglewise.ai/threats/cve-2026-76710-a-vulnerability-exists-in-the-analytics-and-location-engine-ale"},{"cve":"CVE-2026-76709","cvss":9.8,"epss":0.0059,"slug":"cve-2026-76709-a-vulnerability-exists-in-the-internal-administrative-component","title":"HPE Analytics and Location Engine remote write access","severity":"critical","exploited":false,"published_at":"2026-09-22T20:17:06.75+00:00","url":"https://junglewise.ai/threats/cve-2026-76709-a-vulnerability-exists-in-the-internal-administrative-component"},{"cve":"CVE-2026-76708","cvss":9.8,"epss":0.0059,"slug":"cve-2026-76708-a-vulnerability-exists-in-the-analytics-and-location-engine-ale","title":"HPE Analytics and Location Engine default credentials","severity":"critical","exploited":false,"published_at":"2026-09-22T20:17:06.62+00:00","url":"https://junglewise.ai/threats/cve-2026-76708-a-vulnerability-exists-in-the-analytics-and-location-engine-ale"},{"cve":"CVE-2026-76707","cvss":4.3,"epss":0.0023,"slug":"cve-2026-76707-hpe-edgeconnect-sd-wan-gateway-information-disclosure-via-memory","title":"HPE EdgeConnect SD-WAN Gateway information disclosure via memory access","severity":"medium","exploited":false,"published_at":"2026-09-15T20:17:56.483+00:00","url":"https://junglewise.ai/threats/cve-2026-76707-hpe-edgeconnect-sd-wan-gateway-information-disclosure-via-memory"},{"cve":"CVE-2026-76702","cvss":5.8,"epss":0.0011,"slug":"cve-2026-76702-hpe-edgeconnect-denial-of-service-in-operating-system","title":"HPE EdgeConnect denial of service in operating system","severity":"medium","exploited":false,"published_at":"2026-09-15T20:17:54.72+00:00","url":"https://junglewise.ai/threats/cve-2026-76702-hpe-edgeconnect-denial-of-service-in-operating-system"},{"cve":"CVE-2026-76701","cvss":5.9,"epss":0.0039,"slug":"cve-2026-76701-hpe-networking-edgeconnect-information-disclosure-in-api-endpoint","title":"HPE Networking EdgeConnect information disclosure in API endpoint","severity":"medium","exploited":false,"published_at":"2026-09-15T20:17:54.617+00:00","url":"https://junglewise.ai/threats/cve-2026-76701-hpe-networking-edgeconnect-information-disclosure-in-api-endpoint"},{"cve":"CVE-2026-76699","cvss":6.4,"epss":0.0022,"slug":"cve-2026-76699-hpe-edgeconnect-sd-wan-gateway-buffer-overflow-in-system-service","title":"HPE EdgeConnect SD-WAN Gateway buffer overflow in system service","severity":"medium","exploited":false,"published_at":"2026-09-15T20:17:54.397+00:00","url":"https://junglewise.ai/threats/cve-2026-76699-hpe-edgeconnect-sd-wan-gateway-buffer-overflow-in-system-service"},{"cve":"CVE-2026-76697","cvss":6.5,"epss":0.0045,"slug":"cve-2026-76697-hpe-networking-edgeconnect-sd-wan-gateway-information-disclosure","title":"HPE Networking EdgeConnect SD-WAN Gateway information disclosure in web management interface","severity":"medium","exploited":false,"published_at":"2026-09-15T20:17:53.787+00:00","url":"https://junglewise.ai/threats/cve-2026-76697-hpe-networking-edgeconnect-sd-wan-gateway-information-disclosure"},{"cve":"CVE-2026-76696","cvss":6.5,"epss":0.0027,"slug":"cve-2026-76696-hpe-edgeconnect-sd-wan-gateway-denial-of-service","title":"HPE EdgeConnect SD-WAN Gateway denial of service","severity":"medium","exploited":false,"published_at":"2026-09-15T20:17:53.29+00:00","url":"https://junglewise.ai/threats/cve-2026-76696-hpe-edgeconnect-sd-wan-gateway-denial-of-service"},{"cve":"CVE-2026-76695","cvss":6.5,"epss":0.0048,"slug":"cve-2026-76695-hpe-edgeconnect-sd-wan-gateway-buffer-overflow-in-underlying-os","title":"HPE EdgeConnect SD-WAN Gateway buffer overflow in underlying OS","severity":"medium","exploited":false,"published_at":"2026-09-15T20:17:52.777+00:00","url":"https://junglewise.ai/threats/cve-2026-76695-hpe-edgeconnect-sd-wan-gateway-buffer-overflow-in-underlying-os"},{"cve":"CVE-2026-76692","cvss":7.1,"epss":0.0028,"slug":"cve-2026-76692-hpe-edgeconnect-sd-wan-gateway-information-disclosure-and-denial","title":"HPE EdgeConnect SD-WAN Gateway information disclosure and denial of service","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:51.263+00:00","url":"https://junglewise.ai/threats/cve-2026-76692-hpe-edgeconnect-sd-wan-gateway-information-disclosure-and-denial"},{"cve":"CVE-2026-76691","cvss":7.2,"epss":0.0076,"slug":"cve-2026-76691-hpe-networking-edgeconnect-sd-wan-gateway-buffer-overflow-in-api","title":"HPE Networking EdgeConnect SD-WAN Gateway buffer overflow in API","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:51.16+00:00","url":"https://junglewise.ai/threats/cve-2026-76691-hpe-networking-edgeconnect-sd-wan-gateway-buffer-overflow-in-api"},{"cve":"CVE-2026-76687","cvss":7.5,"epss":0.0047,"slug":"cve-2026-76687-a-vulnerability-in-the-api-endpoint-of-hpe-networking-edgeconnect","title":"HPE EdgeConnect SD-WAN Orchestrator privilege escalation in API endpoint","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:50.683+00:00","url":"https://junglewise.ai/threats/cve-2026-76687-a-vulnerability-in-the-api-endpoint-of-hpe-networking-edgeconnect"},{"cve":"CVE-2026-76685","cvss":8.1,"epss":0.0067,"slug":"cve-2026-76685-hpe-proxy-packet-processing-integer-overflow","title":"HPE proxy packet processing integer overflow","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:50.453+00:00","url":"https://junglewise.ai/threats/cve-2026-76685-hpe-proxy-packet-processing-integer-overflow"},{"cve":"CVE-2026-76683","cvss":8.1,"epss":0.0059,"slug":"cve-2026-76683-hpe-edgeconnect-sd-wan-gateway-buffer-overflow-in-api-endpoint","title":"HPE EdgeConnect SD-WAN Gateway buffer overflow in API endpoint","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:50.227+00:00","url":"https://junglewise.ai/threats/cve-2026-76683-hpe-edgeconnect-sd-wan-gateway-buffer-overflow-in-api-endpoint"},{"cve":"CVE-2026-76679","cvss":8.6,"epss":0.0046,"slug":"cve-2026-76679-hpe-edgeconnect-sd-wan-denial-of-service","title":"HPE EdgeConnect SD-WAN denial of service","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:49.767+00:00","url":"https://junglewise.ai/threats/cve-2026-76679-hpe-edgeconnect-sd-wan-denial-of-service"},{"cve":"CVE-2026-76678","cvss":8.8,"epss":0.0063,"slug":"cve-2026-76678-hpe-edgeconnect-sd-wan-gateway-api-privilege-escalation","title":"HPE EdgeConnect SD-WAN Gateway API privilege escalation","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:49.65+00:00","url":"https://junglewise.ai/threats/cve-2026-76678-hpe-edgeconnect-sd-wan-gateway-api-privilege-escalation"},{"cve":"CVE-2026-76677","cvss":8.8,"epss":0.0054,"slug":"cve-2026-76677-hpe-edgeconnect-privilege-escalation-in-api","title":"HPE EdgeConnect privilege escalation in API","severity":"high","exploited":false,"published_at":"2026-09-15T20:17:49.54+00:00","url":"https://junglewise.ai/threats/cve-2026-76677-hpe-edgeconnect-privilege-escalation-in-api"},{"cve":"CVE-2026-76674","cvss":9.8,"epss":0.0101,"slug":"cve-2026-76674-hpe-edgeconnect-sd-wan-gateway-buffer-overflow","title":"HPE EdgeConnect SD-WAN Gateway buffer overflow","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:49.207+00:00","url":"https://junglewise.ai/threats/cve-2026-76674-hpe-edgeconnect-sd-wan-gateway-buffer-overflow"}],"vendor":{"hub":true,"name":"Hpe","slug":"hpe","homepage":"https://www.hpe.com/","description":"A multinational information technology company that provides enterprise hardware, software, and cloud services.","url":"https://junglewise.ai/threats/vendors/hpe"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":2,"exploited":0,"vulnerabilities":2},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":5,"exploited":0,"vulnerabilities":53},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":5},{"week":"2026-09-14","critical":4,"exploited":0,"vulnerabilities":19},{"week":"2026-09-21","critical":2,"exploited":0,"vulnerabilities":9}],"most_severe":[{"cve":"CVE-2026-76658","cvss":10,"epss":0.0075,"slug":"cve-2026-76658-hpe-networking-fabric-composer-ssh-daemon-auth-bypass","title":"HPE Networking Fabric Composer SSH daemon auth bypass","severity":"critical","exploited":false,"published_at":"2026-09-01T20:17:23.097+00:00","url":"https://junglewise.ai/threats/cve-2026-76658-hpe-networking-fabric-composer-ssh-daemon-auth-bypass"},{"cve":"CVE-2026-76657","cvss":10,"epss":0.0075,"slug":"cve-2026-76657-hpe-networking-fabric-composer-api-authentication-bypass","title":"HPE Networking Fabric Composer API authentication bypass","severity":"critical","exploited":false,"published_at":"2026-09-01T20:17:22.99+00:00","url":"https://junglewise.ai/threats/cve-2026-76657-hpe-networking-fabric-composer-api-authentication-bypass"},{"cve":"CVE-2026-76672","cvss":9.9,"epss":0.0052,"slug":"cve-2026-76672-a-vulnerability-exists-in-the-sd-wan-orchestrator-that-may-lead","title":"HPE SD-WAN Orchestrator sensitive information disclosure","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:48.977+00:00","url":"https://junglewise.ai/threats/cve-2026-76672-a-vulnerability-exists-in-the-sd-wan-orchestrator-that-may-lead"},{"cve":"CVE-2026-76670","cvss":9.9,"epss":0.005,"slug":"cve-2026-76670-privilege-escalation-vulnerabilities-exist-in-the-api-of-hpe","title":"HPE EdgeConnect SD-WAN Orchestrator API privilege escalation","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:48.833+00:00","url":"https://junglewise.ai/threats/cve-2026-76670-privilege-escalation-vulnerabilities-exist-in-the-api-of-hpe"},{"cve":"CVE-2026-76669","cvss":9.9,"epss":0.005,"slug":"cve-2026-76669-privilege-escalation-vulnerabilities-exist-in-the-api-of-hpe","title":"HPE EdgeConnect SD-WAN Orchestrator API privilege escalation","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:48.627+00:00","url":"https://junglewise.ai/threats/cve-2026-76669-privilege-escalation-vulnerabilities-exist-in-the-api-of-hpe"},{"cve":"CVE-2026-76674","cvss":9.8,"epss":0.0101,"slug":"cve-2026-76674-hpe-edgeconnect-sd-wan-gateway-buffer-overflow","title":"HPE EdgeConnect SD-WAN Gateway buffer overflow","severity":"critical","exploited":false,"published_at":"2026-09-15T20:17:49.207+00:00","url":"https://junglewise.ai/threats/cve-2026-76674-hpe-edgeconnect-sd-wan-gateway-buffer-overflow"},{"cve":"CVE-2026-23600","cvss":9.8,"epss":0.0096,"slug":"cve-2026-23600-hpe-autopass-license-server-remote-authentication-bypass","title":"HPE AutoPass License Server remote authentication bypass","severity":"critical","exploited":false,"published_at":"2026-03-02T15:16:32.697+00:00","url":"https://junglewise.ai/threats/cve-2026-23600-hpe-autopass-license-server-remote-authentication-bypass"},{"cve":"CVE-2026-63456","cvss":9.8,"epss":0.008,"slug":"cve-2026-63456-hpe-networking-sd-wan-orchestrator-rest-api-authentication-bypass","title":"HPE Networking SD-WAN Orchestrator REST API authentication bypass","severity":"critical","exploited":false,"published_at":"2026-08-04T17:16:57.853+00:00","url":"https://junglewise.ai/threats/cve-2026-63456-hpe-networking-sd-wan-orchestrator-rest-api-authentication-bypass"},{"cve":"CVE-2026-63455","cvss":9.8,"epss":0.008,"slug":"cve-2026-63455-hpe-networking-sd-wan-orchestrator-rest-api-authentication-bypass","title":"HPE Networking SD-WAN Orchestrator REST API authentication bypass","severity":"critical","exploited":false,"published_at":"2026-08-04T17:16:57.717+00:00","url":"https://junglewise.ai/threats/cve-2026-63455-hpe-networking-sd-wan-orchestrator-rest-api-authentication-bypass"},{"cve":"CVE-2026-76709","cvss":9.8,"epss":0.0059,"slug":"cve-2026-76709-a-vulnerability-exists-in-the-internal-administrative-component","title":"HPE Analytics and Location Engine remote write access","severity":"critical","exploited":false,"published_at":"2026-09-22T20:17:06.75+00:00","url":"https://junglewise.ai/threats/cve-2026-76709-a-vulnerability-exists-in-the-internal-administrative-component"}],"generated_at":"2026-09-26T12:07:00.15149+00:00","technologies":[{"name":"Hpe Networking Fabric Composer","slug":"networking-fabric-composer","vulnerabilities":51,"url":"https://junglewise.ai/threats/technologies/networking-fabric-composer"},{"name":"Hpe EdgeConnect SD-WAN Gateway","slug":"edgeconnect-sd-wan-gateway","vulnerabilities":16,"url":"https://junglewise.ai/threats/technologies/edgeconnect-sd-wan-gateway"}]}