CVE-2026-19766

An authentication bypass vulnerability exists in the underlying operating system of HPE Networking Fabric Composer. Successful exploitation could allow an unauthenticated adjacent attacker to execute arbitrary code as a privileged user on the underlying operating system, leading to complete compromise of the AFC host.

  • Published Sep 1, 2026
  • CVSS 9.6 critical
  • 0.3% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-19766 at the National Vulnerability Database