Hackers Exploit VeloCloud Orchestrator Command Injection Vulnerability in the Wild

Security researchers have issued a warning about a critical command injection vulnerability that is being actively exploited in on-premises VeloCloud Orchestrator (VCO) deployments. This vulnerability, tracked as CVE-2026-16812, allows remote attackers to access privileged internal functions and potentially take control of the VeloCloud Orchestrator host. The flaw has received the highest severity score of 10.0 […]

This article has been indexed from Cyber Security News

Read the original article: