Skip to content
VulniPulse

HPE Aruba Networking Security Advisories & CVEs

293 advisories tracked · HPE Aruba Networking Security Advisories (PSIRT) via NVD · direct feeds checked every minute; rate-limited backstops use a safe source cadence

Android app · Google Play

Monitor Aruba CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Check if your Aruba device is affected

Pick your product and enter the exact software release it runs. We match it against the affected/fixed versions in Aruba's recent advisories.

Official source

HPE Aruba Networking Security Advisories (PSIRT) via NVD

Aruba's PSIRT bulletin portal (arubanetworks.com) is a JavaScript app with no stable public feed, so VulniPulse ingests Aruba's CVEs from NVD. Aruba publishes under the shared HPE CNA (security-alert@hpe.com), which also covers non-networking HPE products — so this feed is filtered to the full HPE Aruba Networking portfolio: ClearPass, AOS-8 mobility controllers, AOS-10 gateways and APs, Instant APs, AOS-CX and legacy AOS-Switch, Aruba Central, Fabric Composer and EdgeConnect/Silver Peak SD-WAN. Each entry links back to the official Aruba/HPE advisory when NVD carries the reference.

Latest Aruba advisories

High7.8Aruba Updated

High [CVE-2026-79807] ClearPass Policy Manager: missing integrity verification vulnerability in the Windows client software for ClearPass Policy Manager could allow malicious users on a local instance to elevate their user privileges

A missing integrity verification vulnerability in the Windows client software for ClearPass Policy Manager could allow malicious users on a local instance to elevate their user privileges. A successful exploit could allow these users to execute attacker-supplied code with elevated privileges on the local system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79807
ClearPassClearPass Policy Manager
Oct 6, 2026
High7.8Aruba Updated

High [CVE-2026-79806] ClearPass Policy Manager: privilege escalation vulnerability in the ClearPass Policy Manager OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges

A privilege escalation vulnerability in the ClearPass Policy Manager OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges. A successful exploit allows a malicious user to escalate to root privileges on the affected Linux client. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79806
ClearPassClearPass Policy Manager
Oct 6, 2026
High8.8Aruba Updated

High [CVE-2026-79803] ClearPass Policy Manager: command injection vulnerability exists in the API of ClearPass Policy Manager

A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploitation could allow an authenticated remote attacker to escalate privileges and gain administrative control of the affected system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79803
ClearPassClearPass Policy Manager
Oct 6, 2026
High8.8Aruba Updated

High [CVE-2026-79802] ClearPass Policy Manager: command injection vulnerability exists in the client software of ClearPass Policy Manager

A command injection vulnerability exists in the client software of ClearPass Policy Manager. Successful exploitation could allow an attacker who is able to supply crafted input to the affected software to execute arbitrary commands with elevated privileges on the affected host. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79802
ClearPassClearPass Policy Manager
Oct 6, 2026
High8.8Aruba Updated

High [CVE-2026-79800] ClearPass Policy Manager: authenticated path traversal vulnerability exists in the command line interface of ClearPass Policy Manager

An authenticated path traversal vulnerability exists in the command line interface of ClearPass Policy Manager. Successful exploitation could allow a low-privileged authenticated remote attacker to execute arbitrary code with elevated privileges on the underlying operating system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79800
ClearPassClearPass Policy Manager
Oct 6, 2026
High8.8Aruba Updated

High [CVE-2026-79799] ClearPass Policy Manager: vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface

A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79799
ClearPassClearPass Policy Manager
Oct 6, 2026
High8.8Aruba Updated

High [CVE-2026-79797] ClearPass Policy Manager: improper access control vulnerability exists in the Android client application for HPE Networking ClearPass Policy Manager, where application functionality may be invoked by untrusted sources

An improper access control vulnerability exists in the Android client application for HPE Networking ClearPass Policy Manager, where application functionality may be invoked by untrusted sources. Successful exploitation could allow an unauthenticated remote attacker, with user interaction, to obtain sensitive information from the affected user. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79797
ClearPassClearPass Policy Manager
Oct 6, 2026
High8.8Aruba

High [CVE-2026-76748] Authenticated Privilege Escalation Vulnerability in the API of AOS-S

A privilege escalation vulnerability exists in the API of AOS-S. Successful exploitation could allow an authenticated read-only user to escalate their privileges and gain administrative access to the affected system. Affected product named by the advisory: AOS-Switch (AOS-S).

CVE-2026-76748
AOS-SwitchSwitches (AOS-CX)
Oct 6, 2026
Medium5.3Aruba Updated

Medium [CVE-2026-79818] ClearPass Policy Manager: vulnerability in an API interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to circumvent existing authentication controls

A vulnerability in an API interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful exploitation could allow an attacker to obtain sensitive information from the affected system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79818
ClearPassClearPass Policy Manager
Oct 6, 2026
Medium5.5Aruba Updated

Medium [CVE-2026-79817] ClearPass Policy Manager: sensitive information disclosure vulnerability exists in the client software of HPE Networking ClearPass Policy Manager

A sensitive information disclosure vulnerability exists in the client software of HPE Networking ClearPass Policy Manager. Successful exploitation could allow an attacker with local access to the affected system to obtain sensitive information. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79817
ClearPassClearPass Policy Manager
Oct 6, 2026
Medium6.3Aruba Updated

Medium [CVE-2026-79816] ClearPass Policy Manager: vulnerability in a client interface of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a DOM-based cross-site scripting (XSS) attack against a user of the affected client interface

A vulnerability in a client interface of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a DOM-based cross-site scripting (XSS) attack against a user of the affected client interface. Successful exploitation could allow an attacker to execute arbitrary script code in a victim's browser context within the affected client interface. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79816
ClearPassClearPass Policy Manager
Oct 6, 2026
Medium6.5Aruba Updated

Medium [CVE-2026-79815] ClearPass Policy Manager: command injection vulnerability in the OnGuard agent of ClearPass Policy Manager could allow an authenticated remote attacker to inject arbitrary commands

A command injection vulnerability in the OnGuard agent of ClearPass Policy Manager could allow an authenticated remote attacker to inject arbitrary commands. Successful exploitation could allow an attacker to execute commands with elevated privileges on the affected Windows endpoint. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79815
ClearPassClearPass Policy Manager
Oct 6, 2026
Medium6.7Aruba Updated

Medium [CVE-2026-79814] ClearPass Policy Manager: arbitrary file write vulnerability in the ClearPass Policy Manager OnGuard agent could allow malicious users on a local instance to elevate their user privileges if certain preconditions outside of the attacker's control are met

An arbitrary file write vulnerability in the ClearPass Policy Manager OnGuard agent could allow malicious users on a local instance to elevate their user privileges if certain preconditions outside of the attacker's control are met. Successful exploitation could allow a local attacker to execute arbitrary code with elevated privileges on the affected system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79814
ClearPassClearPass Policy Manager
Oct 6, 2026
Medium6.7Aruba Updated

Medium [CVE-2026-79813] ClearPass: local privilege escalation vulnerability exists in the ClearPass client software

A local privilege escalation vulnerability exists in the ClearPass client software. Successful exploitation could allow a low-privileged local user to execute commands with elevated privileges on the affected system, if certain conditions outside of the attacker's control are met. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79813
ClearPassClearPass Policy Manager
Oct 6, 2026
Medium6.1Aruba Updated

Medium [CVE-2026-79812] ClearPass Policy Manager: denial of service vulnerability exists in the OnGuard agent of HPE Networking ClearPass Policy Manager

A denial of service vulnerability exists in the OnGuard agent of HPE Networking ClearPass Policy Manager. Successful exploitation could allow an authenticated local attacker to interrupt the normal operation of the agent service. Affected product named by the advisory: ClearPass Policy Manager (CPPM).

CVE-2026-79812
ClearPassClearPass Policy Manager
Oct 6, 2026
Medium6.5Aruba

Medium [CVE-2026-76749] Unauthenticated Sensitive Information Disclosure in AOS-S

A sensitive information disclosure vulnerability exists in AOS-S. Successful exploitation could allow an unauthenticated remote attacker to access sensitive information. Affected product named by the advisory: AOS-Switch (AOS-S).

CVE-2026-76749
AOS-SwitchSwitches (AOS-CX)
Oct 6, 2026
Medium6.5Aruba

Medium [CVE-2026-76741] Authenticated Buffer Overflow Vulnerabilities lead to Denial-of-Service in AOS-S

Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation could allow an authenticated remote attacker to cause a denial-of-service condition on the affected system. Affected product named by the advisory: AOS-Switch (AOS-S).

CVE-2026-76741
AOS-SwitchSwitches (AOS-CX)
Oct 6, 2026
Medium6.5Aruba

Medium [CVE-2026-97258] WordPress Aruba Migration Tool plugin <= 1.0.4 - Broken Access Control vulnerability

Subscriber Broken Access Control in Aruba Migration Tool <= 1.0.4 versions.

CVE-2026-97258
Unclassified
Oct 1, 2026
Critical9.6Aruba

Critical [CVE-2026-76725] Authentication Bypass in a Management Protocol of HPE Networking Instant ON APs

A vulnerability has been identified in a management protocol of HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to circumvent existing authentication controls. Successful exploitation could result in a complete bypass of security restrictions, potentially leading to remote code execution with elevated privileges.

CVE-2026-76725
Instant APWireless & ControllersInstant
Sep 29, 2026
Critical9.6Aruba

Critical [CVE-2026-76724] Unauthenticated Adjacent Command Injection Vulnerability in HPE Networking Instant ON APs Command Line Interface (CLI) Accessed by the PAPI Protocol

A command injection vulnerability exists in CLI of the affected HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to perform command injection by sending specially crafted packets. Successful exploitation could allow an attacker to execute arbitrary commands as a privileged user on the underlying operating system.

CVE-2026-76724
Instant APWireless & ControllersInstant
Sep 29, 2026

← All vendors