HPE Aruba Networking Security Advisories & CVEs
293 advisories tracked · HPE Aruba Networking Security Advisories (PSIRT) via NVD · direct feeds checked every minute; rate-limited backstops use a safe source cadence
Android app · Google Play
Monitor Aruba CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Check if your Aruba device is affected
Pick your product and enter the exact software release it runs. We match it against the affected/fixed versions in Aruba's recent advisories.
Official source
HPE Aruba Networking Security Advisories (PSIRT) via NVD
Aruba's PSIRT bulletin portal (arubanetworks.com) is a JavaScript app with no stable public feed, so VulniPulse ingests Aruba's CVEs from NVD. Aruba publishes under the shared HPE CNA (security-alert@hpe.com), which also covers non-networking HPE products — so this feed is filtered to the full HPE Aruba Networking portfolio: ClearPass, AOS-8 mobility controllers, AOS-10 gateways and APs, Instant APs, AOS-CX and legacy AOS-Switch, Aruba Central, Fabric Composer and EdgeConnect/Silver Peak SD-WAN. Each entry links back to the official Aruba/HPE advisory when NVD carries the reference.
Latest Aruba advisories
High [CVE-2026-79807] ClearPass Policy Manager: missing integrity verification vulnerability in the Windows client software for ClearPass Policy Manager could allow malicious users on a local instance to elevate their user privileges
A missing integrity verification vulnerability in the Windows client software for ClearPass Policy Manager could allow malicious users on a local instance to elevate their user privileges. A successful exploit could allow these users to execute attacker-supplied code with elevated privileges on the local system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
High [CVE-2026-79806] ClearPass Policy Manager: privilege escalation vulnerability in the ClearPass Policy Manager OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges
A privilege escalation vulnerability in the ClearPass Policy Manager OnGuard Linux agent could allow malicious users on a Linux instance to elevate their user privileges. A successful exploit allows a malicious user to escalate to root privileges on the affected Linux client. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
High [CVE-2026-79803] ClearPass Policy Manager: command injection vulnerability exists in the API of ClearPass Policy Manager
A command injection vulnerability exists in the API of ClearPass Policy Manager. Successful exploitation could allow an authenticated remote attacker to escalate privileges and gain administrative control of the affected system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
High [CVE-2026-79802] ClearPass Policy Manager: command injection vulnerability exists in the client software of ClearPass Policy Manager
A command injection vulnerability exists in the client software of ClearPass Policy Manager. Successful exploitation could allow an attacker who is able to supply crafted input to the affected software to execute arbitrary commands with elevated privileges on the affected host. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
High [CVE-2026-79800] ClearPass Policy Manager: authenticated path traversal vulnerability exists in the command line interface of ClearPass Policy Manager
An authenticated path traversal vulnerability exists in the command line interface of ClearPass Policy Manager. Successful exploitation could allow a low-privileged authenticated remote attacker to execute arbitrary code with elevated privileges on the underlying operating system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
High [CVE-2026-79799] ClearPass Policy Manager: vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
High [CVE-2026-79797] ClearPass Policy Manager: improper access control vulnerability exists in the Android client application for HPE Networking ClearPass Policy Manager, where application functionality may be invoked by untrusted sources
An improper access control vulnerability exists in the Android client application for HPE Networking ClearPass Policy Manager, where application functionality may be invoked by untrusted sources. Successful exploitation could allow an unauthenticated remote attacker, with user interaction, to obtain sensitive information from the affected user. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
High [CVE-2026-76748] Authenticated Privilege Escalation Vulnerability in the API of AOS-S
A privilege escalation vulnerability exists in the API of AOS-S. Successful exploitation could allow an authenticated read-only user to escalate their privileges and gain administrative access to the affected system. Affected product named by the advisory: AOS-Switch (AOS-S).
Medium [CVE-2026-79818] ClearPass Policy Manager: vulnerability in an API interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to circumvent existing authentication controls
A vulnerability in an API interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful exploitation could allow an attacker to obtain sensitive information from the affected system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
Medium [CVE-2026-79817] ClearPass Policy Manager: sensitive information disclosure vulnerability exists in the client software of HPE Networking ClearPass Policy Manager
A sensitive information disclosure vulnerability exists in the client software of HPE Networking ClearPass Policy Manager. Successful exploitation could allow an attacker with local access to the affected system to obtain sensitive information. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
Medium [CVE-2026-79816] ClearPass Policy Manager: vulnerability in a client interface of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a DOM-based cross-site scripting (XSS) attack against a user of the affected client interface
A vulnerability in a client interface of HPE Networking ClearPass Policy Manager could allow an unauthenticated remote attacker to conduct a DOM-based cross-site scripting (XSS) attack against a user of the affected client interface. Successful exploitation could allow an attacker to execute arbitrary script code in a victim's browser context within the affected client interface. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
Medium [CVE-2026-79815] ClearPass Policy Manager: command injection vulnerability in the OnGuard agent of ClearPass Policy Manager could allow an authenticated remote attacker to inject arbitrary commands
A command injection vulnerability in the OnGuard agent of ClearPass Policy Manager could allow an authenticated remote attacker to inject arbitrary commands. Successful exploitation could allow an attacker to execute commands with elevated privileges on the affected Windows endpoint. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
Medium [CVE-2026-79814] ClearPass Policy Manager: arbitrary file write vulnerability in the ClearPass Policy Manager OnGuard agent could allow malicious users on a local instance to elevate their user privileges if certain preconditions outside of the attacker's control are met
An arbitrary file write vulnerability in the ClearPass Policy Manager OnGuard agent could allow malicious users on a local instance to elevate their user privileges if certain preconditions outside of the attacker's control are met. Successful exploitation could allow a local attacker to execute arbitrary code with elevated privileges on the affected system. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
Medium [CVE-2026-79813] ClearPass: local privilege escalation vulnerability exists in the ClearPass client software
A local privilege escalation vulnerability exists in the ClearPass client software. Successful exploitation could allow a low-privileged local user to execute commands with elevated privileges on the affected system, if certain conditions outside of the attacker's control are met. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
Medium [CVE-2026-79812] ClearPass Policy Manager: denial of service vulnerability exists in the OnGuard agent of HPE Networking ClearPass Policy Manager
A denial of service vulnerability exists in the OnGuard agent of HPE Networking ClearPass Policy Manager. Successful exploitation could allow an authenticated local attacker to interrupt the normal operation of the agent service. Affected product named by the advisory: ClearPass Policy Manager (CPPM).
Medium [CVE-2026-76749] Unauthenticated Sensitive Information Disclosure in AOS-S
A sensitive information disclosure vulnerability exists in AOS-S. Successful exploitation could allow an unauthenticated remote attacker to access sensitive information. Affected product named by the advisory: AOS-Switch (AOS-S).
Medium [CVE-2026-76741] Authenticated Buffer Overflow Vulnerabilities lead to Denial-of-Service in AOS-S
Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation could allow an authenticated remote attacker to cause a denial-of-service condition on the affected system. Affected product named by the advisory: AOS-Switch (AOS-S).
Medium [CVE-2026-97258] WordPress Aruba Migration Tool plugin <= 1.0.4 - Broken Access Control vulnerability
Subscriber Broken Access Control in Aruba Migration Tool <= 1.0.4 versions.
Critical [CVE-2026-76725] Authentication Bypass in a Management Protocol of HPE Networking Instant ON APs
A vulnerability has been identified in a management protocol of HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to circumvent existing authentication controls. Successful exploitation could result in a complete bypass of security restrictions, potentially leading to remote code execution with elevated privileges.
Critical [CVE-2026-76724] Unauthenticated Adjacent Command Injection Vulnerability in HPE Networking Instant ON APs Command Line Interface (CLI) Accessed by the PAPI Protocol
A command injection vulnerability exists in CLI of the affected HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to perform command injection by sending specially crafted packets. Successful exploitation could allow an attacker to execute arbitrary commands as a privileged user on the underlying operating system.