Hewlett Packard Enterprise (HPE) has 41 CVEs on record. Disclosure cadence is accelerating: 41 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 41. The median CVSS is 7.2 (high), with 3 rated critical. None have a confirmed exploitation report. The dominant weakness classes are CWE-120 (8) and CWE-400 (7). Most affected products: EdgeConnect SD-WAN Gateways (27), ALE (9), ClearPass Policy Manager (CPPM) (5).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.2
- Publish → KEV
- —
- Last 90 days
- 41 prev 0
Products
- EdgeConnect SD-WAN Gateways 27
- ALE 9
- ClearPass Policy Manager (CPPM) 5
Worst active — by depth score
CVE-2026-76709Critical· 9.8A vulnerability exists in the internal administrative component of Analytics and Location Engine (ALE)54CVE-2026-76674Critical· 9.8Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to execute arbitrary code54CVE-2026-73786High· 7.5A vulnerability in the web-based management interface of CPPM could allow an unauthenticated remote attacker to conduct a Denial-of-Service (DoS) attack53CVE-2026-76675Critical· 9.1A command injection vulnerability exists in the command line interface of EdgeConnect SD-WAN Gateways50CVE-2026-76678High· 8.8A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow a low-privilege authenticated remote attacker to escalate privileges49
Hewlett Packard Enterprise (HPE) vulnerabilities
CVEs affecting Hewlett Packard Enterprise (HPE), newest first. Open any entry for full detail, references, and exploit status.
41 CVEsRSS
CVE-2026-76701Medium· 5.9A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to access sensitive information
A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to access sensitive information. Successful exploitation could allow an attacker to retrieve information whi…
CVE-2026-76699Medium· 6.4A buffer overflow vulnerability exists in a system service within the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated adjacent attacker to cause a denial-of-service
A buffer overflow vulnerability exists in a system service within the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated adjacent attacker to cause a denial-of-service. Successfu…
CVE-2026-76700Medium· 5.9Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service
Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service. Successful exploitation could allow an attacker to interrupt the normal operation of the affected …
CVE-2026-76707Medium· 4.3A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents
A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful exploitation could allow an attacker to gain insight into internal services an…
CVE-2026-76703Medium· 5.5A buffer overflow vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways that could allow an authenticated attacker with administrative access to cause a denial of service
A buffer overflow vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways that could allow an authenticated attacker with administrative access to cause a denial of service. Successful exp…
CVE-2026-76702Medium· 5.8A vulnerability in the operating system of HPE Networking EdgeConnect SD-WAN Gateways could allow an authenticated local attacker to cause a denial-of-service
A vulnerability in the operating system of HPE Networking EdgeConnect SD-WAN Gateways could allow an authenticated local attacker to cause a denial-of-service. Successful exploitation could allow an attacker to disrupt system operations,…
CVE-2026-73787High· 7.2Authenticated Arbitrary File Write allows Remote Code Execution via CPPM Web Interface
A vulnerability in the CPPM web interface could allow an authenticated remote attacker to access directory information on a vulnerable system. Successful exploitation could allow an attacker to execute arbitrary commands on the underlyin…
CVE-2026-73769High· 7.2Authenticated Remote Code Execution in CPPM Web Interface
A vulnerability in the web-based management interface of vulnerable CPPM systems could allow an authenticated remote attacker to achieve remote code execution. Successful exploitation could allow an attacker to execute arbitrary commands…
CVE-2026-73789Medium· 5.3A vulnerability in the web-based management interface of CPPM guest account management services could allow an unauthenticated remote attacker to manipulate account settings
A vulnerability in the web-based management interface of CPPM guest account management services could allow an unauthenticated remote attacker to manipulate account settings. Successful exploitation could allow an attacker to extend netw…
CVE-2026-73788Medium· 6.5A vulnerability in the ClearPass OnGuard agent could allow an authenticated remote attacker to elevate their own privileges on a vulnerable ClearPass OnGuard deployment
A vulnerability in the ClearPass OnGuard agent could allow an authenticated remote attacker to elevate their own privileges on a vulnerable ClearPass OnGuard deployment. Successful exploitation could allow an attacker to obtain root priv…
CVE-2026-73786High· 7.5PoCA vulnerability in the web-based management interface of CPPM could allow an unauthenticated remote attacker to conduct a Denial-of-Service (DoS) attack
A vulnerability in the web-based management interface of CPPM could allow an unauthenticated remote attacker to conduct a Denial-of-Service (DoS) attack. Successful exploitation could allow an attacker to cause instability and degrade pe…