CVE-2026-82370

CVE & Vulnerabilities · September 25, 2026

CVE & Vulnerabilities·nvd.nist.gov

CVE-2026-82370 is a newly disclosed flaw in Broadcom's Brocade SANnav storage-network management software, where the orchestrator's HTTP service accepts commands from network-adjacent attackers without requiring any login. Exploiting it lets an outsider push arbitrary administrative commands to connected Fibre Channel switches and tamper with the platform's container runtime, potentially reshaping how an organization's storage fabric is configured. The bug affects every SANnav release before version 3.0.1a, so any unpatched deployment on a reachable network segment is at risk.

// source: nvd.nist.gov ↗

← Back to Blog