Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-76680

Vulnerabilities in the API of EdgeConnect SD-WAN Orchestrator could allow a remote attacker authenticated with low privileges to conduct server-side request forgery (SSRF) attacks. A successful exploit allows an attacker to enumerate information about the internal structure of the EdgeConnect SD-WAN Orchestrator host leading to potential disclosure of sensitive information beyond what is authorized by the user's existing privilege level.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 27.1%
CVSS Severity
CVSS v3 Score 8.5
Products affected by CVE-2026-76680


Contact Us

Shodan ® - All rights reserved