CVE-2026-102160: Arista Networks Cloudvision Cue

High severity, CVSS 7.2. EPSS: 1.4% chance of exploitation in the next 30 days.

An operating system (OS) command injection vulnerability in CloudVision CUE backup management may allow an authenticated Super User to submit a crafted backup request and execute arbitrary commands with the privileges of the affected service.

Affected products

  • Arista Networks Cloudvision Cue: from 2021.2.0, up to and including 2026.2.0

Published 2026-10-06. Last modified 2026-10-07.