# HPE Aruba patches Instant On, 5G Core flaws

Published: 2026-07-08 · Severity: medium · Sectors: telecommunications, technology
Canonical: https://vorant.io/reports/d93721b8-6191-56ae-b982-f6b48cf50ec5/hpe-aruba-patches-instant-on-5g-core-flaws

> CERT-FR advisory details multiple vulnerabilities in HPE Aruba Networking Instant On switches and Private 5G Core enabling DoS, data exposure, and security bypass.

CERT-FR has published an advisory covering multiple vulnerabilities in HPE Aruba Networking products, specifically affecting Instant On Switch models 1830, 1930, and 1960 running versions prior to 3.4.0, and Private 5G Core versions prior to 1.26.1.1. The flaws, tracked as CVE-2026-39803, CVE-2026-39806, CVE-2026-40912, and CVE-2026-44877, could allow an attacker to trigger a remote denial of service, compromise data confidentiality, or bypass security policies.

HPE has released two security bulletins (HPESBNW05038 and HPESBNW05077) alongside patches. No evidence of active exploitation is mentioned in the advisory; organizations running affected switch or 5G core software should apply the vendor-supplied fixes as part of routine patch management.

## Mentioned in this report

- Vulnerabilities: CVE-2026-39803, CVE-2026-39806, CVE-2026-40912, CVE-2026-44877

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0846

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/d93721b8-6191-56ae-b982-f6b48cf50ec5/hpe-aruba-patches-instant-on-5g-core-flaws.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
