CVE-2026-2380
published 2026-09-16CVE-2026-2380: On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sensitive requests and responses may be…
PriorityP343high7.4CVSS 3.1
AVNACLPRLUINSCCLILAL
EPSS
0.25%
14.7th percentile
On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sensitive requests and responses may be unintentionally logged. These may be stored on the local EOS device or recorded on remote accounting servers. Note that gRPC-based streaming via Streaming Telemetry Agent to CloudVision is not affected by this vulnerability.
Examples of sensitive information include:
- Sensitive CLI commands (e.g., "username bob secret myPass")
- Sensitive OpenConfig YANG leafs (e.g., "system/aaa/global/tacacs/config/secret-key")
This issue was discovered internally by Arista, and the company is not aware of any malicious exploitation of this vulnerability in customer networks.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| arista_networks | eos | < 4.33.0F | 4.33.0F |
| arista_networks | eos | >= 4.33.0F < 4.34.0F | 4.34.0F |
| arista_networks | eos | >= 4.34.0F < 4.35.0F | 4.35.0F |
| arista_networks | eos | >= 4.35.0F < 4.36.0F | 4.36.0F |
| arista_networks | eos | 4.36.0F – 4.36.1F | — |
CVSS provenance
nvdv3.17.4HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L
nvdv4.05.1MEDIUMCVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Arista EOS up to 4.36.1F OpenConfig Services information disclosure (WID-SEC-2026-3441)
vuldb·2026-09-17·CVSS 7.4
CVE-2026-2380 [HIGH] Arista EOS up to 4.36.1F OpenConfig Services information disclosure (WID-SEC-2026-3441)
A vulnerability categorized as problematic has been discovered in Arista EOS up to 4.32.x/4.33.x/4.34.x/4.35.x/4.36.1F. This issue affects some unknown processing of the component OpenConfig Services. Executing a manipulation can lead to information disclosure.
The identification of this vulnerability is CVE-2026-2380. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.
GHSA
On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sensitive requests and responses may be unintentionally logged.
ghsa_unreviewed·2026-09-16
CVE-2026-2380 [MEDIUM] CWE-256 On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sensitive requests and responses may be unintentionally logged.
On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sensitive requests and responses may be unintentionally logged. These may be stored on the local EOS device or recorded on remote accounting servers. Note that gRPC-based streaming via Streaming Telemetry Agent to CloudVision is not affected by this vulnerability.
Examples of sensitive information include:
- Sensitive CLI commands (e.g., "username bob secret myPass")
- Sensitive OpenConfig YANG leafs (e.g., "system/aaa/global/tacacs/config/secret-key")
This issue was discovered internally by Arista, and the company is not aware of any malicious exploitation of this vulnerability in customer networks.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-09-16
Published