CVE-2026-73721: Arubanetworks Fabric Composer

High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.

Vulnerabilities in the API of HPE Networking Fabric Composer could allow an authenticated remote attacker to conduct SQL injection attacks against the HPE Networking Fabric Composer instance. An attacker could exploit these vulnerabilities to obtain and modify sensitive information in the underlying database potentially leading to complete compromise of the HPE Networking Fabric Composer host.

Affected products

Published 2026-09-01. Last modified 2026-09-02.