CVE-2026-76726: Hewlett Packard Enterprise HPE Instant On

High severity, CVSS 8.1. EPSS: 0.4% chance of exploitation in the next 30 days.

An authentication bypass vulnerability in the API endpoint of HPE Networking Instant ON could allow an unauthenticated remote attacker to bypass network access controls if certain preconditions outside of the attacker's control are met. Successful exploitation could allow an attacker to obtain unauthorized access to restricted networks.

Affected products

Published 2026-09-29. Last modified 2026-10-01.