High severity8.5NVD Advisory· Published Sep 15, 2026
CVE-2026-76680
CVE-2026-76680
Description
Vulnerabilities in the API of EdgeConnect SD-WAN Orchestrator could allow a remote attacker authenticated with low privileges to conduct server-side request forgery (SSRF) attacks. A successful exploit allows an attacker to enumerate information about the internal structure of the EdgeConnect SD-WAN Orchestrator host leading to potential disclosure of sensitive information beyond what is authorized by the user's existing privilege level.
Affected products
1Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.