CVE-2026-73464
On affected platforms running Arista EOS with gRPC Network Management Interface (gNMI) enabled, a specially crafted request could allow a malicious authenticated client with gRPC Network Management Interface (gNMI) access to execute arbitrary code with root privileges on the switch.
- Published Sep 16, 2026
- CVSS 8.7 high
- 0.6% chance of exploitation in the next 30 days (EPSS)