CVE-2026-102158: Arista Networks Cloudvision Cue
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Improper validation of selected CloudVision CUE application programming interface (API) request parameters may allow an authenticated network user to perform SQL injection against the backend impacting its availability.
Affected products
- Arista Networks Cloudvision Cue: from 2022.2.0, up to and including 2026.2.0
Published 2026-10-06. Last modified 2026-10-07.