Hewlett Packard EnterpriseCVE-2026-76720
Hewlett Packard Enterprise HPE OneView: open redirect
Medium4.3CVE-2026-76720 · Published Sep 29, 2026
A vulnerability in HPE OneView can be remotely exploited to cause a URL redirect.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| HPE OneView Product | < 11.40 | 11.40 |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-601
More Hewlett Packard Enterprise advisories
All Hewlett Packard Enterprise| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 29 | Hewlett Packard Enterprise Instant ON: buffer overflow | Low3.3 | No fix yet |
| Sep 29 | Hewlett Packard Enterprise Instant ON: path traversal | Low3.0 | No fix yet |
| Sep 29 | Hewlett Packard Enterprise Instant ON: buffer overflow | Low2.7 | No fix yet |
| Sep 29 | Hewlett Packard Enterprise Instant ON: memory corruption | Medium6.6 | No fix yet |
| Sep 29 | Hewlett Packard Enterprise Instant ON: authentication bypass | Medium6.5 | No fix yet |
| Sep 29 | Hewlett Packard Enterprise Instant ON: authentication bypass | Medium6.5 | No fix yet |