{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3ociscoroomos/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:o:cisco:ios_xe:16.6.2:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.4:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.4a:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.4s:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.5:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.5a:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.5b:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.6:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.7:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.7a:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.8:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.9:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.6.10:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.7.1:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.7.1a:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.7.1b:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.7.2:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.7.3:*:*:*:*:*:*:*","cpe:2.3:o:cisco:ios_xe:16.7.4:*:*:*:*:*:*:*","cpe:2.3:o:cisco:roomos:*:*:*:*:*:*:*:*","cpe:2.3:o:cisco:roomos_cloud:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9,"id":"CVE-2026-20267"},{"cvss":9.8,"id":"CVE-2026-20272"},{"cvss":7.7,"id":"CVE-2026-20124"},{"cvss":8.6,"id":"CVE-2026-20268"},{"cvss":8.6,"id":"CVE-2026-20269"},{"cvss":8.6,"id":"CVE-2026-20271"},{"cvss":8.6,"id":"CVE-2026-20301"},{"cvss":6.3,"id":"CVE-2026-20311"},{"cvss":4.8,"id":"CVE-2026-20198"},{"cvss":5.7,"id":"CVE-2026-20289"},{"cvss":6.5,"id":"CVE-2026-20294"},{"cvss":5,"id":"CVE-2026-20028"},{"cvss":4.3,"id":"CVE-2026-20308"},{"cvss":5.4,"id":"CVE-2026-20232"},{"cvss":7.5,"id":"CVE-2026-20320"},{"cvss":10,"id":"CVE-2026-20030"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":[],"_cs_severities":["high"],"_cs_tags":["roundup"],"_cs_type":"threat","_cs_vendors":["Cisco"],"content_html":"\u003cp\u003eThis roundup covers 40 Cisco security vulnerabilities. CVSS base scores range from 4.3 to 10.0. None are reported as actively exploited at the time of release. The issues affect Adaptive Security Appliance, BroadWorks, Catalyst SD-WAN, Catalyst SD-WAN Manager, Cisco Crosswork Planning, Cisco Secure Workload, ClamAV, Crosswork, IOS Software, IOS XE Software, Industrial Ethernet 1000 Series Switches, Integrated Management Controller, Packaged Contact Center Enterprise, RoomOS, Secure Workload, Terminal Services Agent, Unified Intelligence Center.\u003c/p\u003e\n\u003ch2 id=\"summary\"\u003eSummary\u003c/h2\u003e\n\u003ctable\u003e\n\t\u003cthead\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003cth\u003eCVE\u003c/th\u003e\n\t\t\t\t\t\u003cth\u003eProduct\u003c/th\u003e\n\t\t\t\t\t\u003cth\u003eSeverity\u003c/th\u003e\n\t\t\t\t\t\u003cth\u003eCVSS\u003c/th\u003e\n\t\t\t\t\t\u003cth\u003eEPSS\u003c/th\u003e\n\t\t\t\t\t\u003cth\u003eKEV\u003c/th\u003e\n\t\t\t\t\t\u003cth\u003eSource\u003c/th\u003e\n\t\t\t\u003c/tr\u003e\n\t\u003c/thead\u003e\n\t\u003ctbody\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCritical\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e9.0\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.24%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20267\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCritical\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e9.8\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.36%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20272\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20310\"\u003eCVE-2026-20310\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCatalyst SD-WAN\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20310\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eHigh\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e7.7\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.34%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20124\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20200\"\u003eCVE-2026-20200\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIntegrated Management Controller\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20200\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20263\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eHigh\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e8.6\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.27%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20268\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eHigh\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e8.6\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.27%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20269\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eHigh\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e8.6\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.27%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20271\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20273\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20301\"\u003eCVE-2026-20301\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eHigh\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e8.6\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.33%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20301\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20312\"\u003eCVE-2026-20312\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCatalyst SD-WAN\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20312\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20313\"\u003eCVE-2026-20313\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCatalyst SD-WAN\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20313\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-xe-webui-dos-PtAODAWW?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XE%20Software%20Web-Based%20Management%20Interface%20Denial%20of%20Service%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20198\"\u003eCVE-2026-20198\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIntegrated Management Controller\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eMedium\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e4.8\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.21%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-7EhBFxBp?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Integrated%20Management%20Controller%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20289\"\u003eCVE-2026-20289\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eRoomOS\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eMedium\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e5.7\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.19%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-infodisc-qBXjfmWm?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Logging%20Subsystem%20Information%20Disclosure%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20294\"\u003eCVE-2026-20294\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCatalyst SD-WAN Manager\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eMedium\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e6.5\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.13%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-infodis-SPuJBDCe?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Manager%20Information%20Disclosure%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20028\"\u003eCVE-2026-20028\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eTerminal Services Agent\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eMedium\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e5.0\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.25%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ts-agent-fw-bypass-MYBTMrev?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Terminal%20Services%20Agent%20Firewall%20Rules%20Bypass%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIOS XE Software\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eMedium\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e4.3\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e0.32%\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webui-dos-qdc7qx3?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XE%20Software%20Web-Based%20Management%20Interface%20Denial%20of%20Service%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20337\"\u003eCVE-2026-20337\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eClamAV\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20337\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20338\"\u003eCVE-2026-20338\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eClamAV\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20338\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20339\"\u003eCVE-2026-20339\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eClamAV\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20339\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20345\"\u003eCVE-2026-20345\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eClamAV\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20345\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20346\"\u003eCVE-2026-20346\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eClamAV\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20346\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20347\"\u003eCVE-2026-20347\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eClamAV\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20347\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20348\"\u003eCVE-2026-20348\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eClamAV\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20348\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20349\"\u003eCVE-2026-20349\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eAdaptive Security Appliance\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-vpn-dos-dzv4mQFF?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20Remote%20Access%20SSL%20VPN%20Denial%20of%20Service%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20232\"\u003eCVE-2026-20232\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIndustrial Ethernet 1000 Series Switches\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eMedium\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e5.4\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ie1k-NgXUFF52?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Industrial%20Ethernet%201000%20Series%20Switches%20Stored%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20314\"\u003eCVE-2026-20314\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003ePackaged Contact Center Enterprise\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-ssrf-TghHxD?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Packaged%20Contact%20Center%20Enterprise%20and%20Cisco%20Unified%20Contact%20Center%20Enterprise%20Server-Side%20Request%20Forgery%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20327\"\u003eCVE-2026-20327\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eUnified Intelligence Center\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuic-sql-inject-2qbfWSm5?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unified%20Intelligence%20Center%20SQL%20Injection%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20177\"\u003eCVE-2026-20177\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eIndustrial Ethernet 1000 Series Switches\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ie1k-uxq86Lnx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Industrial%20Ethernet%201000%20Series%20Switches%20Denial%20of%20Service%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20302\"\u003eCVE-2026-20302\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eRoomOS\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-bof-vTMANZgu?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Stack%20Overflow%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20320\"\u003eCVE-2026-20320\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eBroadWorks\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eHigh\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e7.5\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bworks-xxe-uwUd7CEt?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20BroadWorks%20Out-of-Band%20Blind%20XML%20External%20Entity%20Injection%20Vulnerability%26vs_k=1\"\u003esource\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20030\"\u003eCVE-2026-20030\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCrosswork\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCritical\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e10.0\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20030\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20231\"\u003eCVE-2026-20231\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eSecure Workload\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20231\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20315\"\u003eCVE-2026-20315\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCisco Secure Workload (2.0.1.34, 2.0.2.20, 2.1.1.29, 2.1.1.31, 2.1.1.33, 2.2.1.35, 2.2.1.39, 2.2.1.41, 2.3.1.41, 2.3.1.45, 2.3.1.49, 2.3.1.50, 2.3.1.51, 2.3.1.52, 2.3.1.53, 1.103.1.12, 3.1.1.53, 3.1.1.54, 3.1.1.55, 3.1.1.59, 3.1.1.61, 3.1.1.65, 3.1.1.67, 3.1.1.70, 3.2.1.18, 3.2.1.19, 3.2.1.20, 3.2.1.28, 3.3.2.12, 3.3.2.16, 3.3.2.23, 3.3.2.28, 3.3.2.33, 3.3.2.42, 3.3.2.50, 3.4.1.1, 3.4.1.6, 3.4.1.19, 3.4.1.28, 3.4.1.34, 3.4.1.35, 3.5.1.1, 3.5.1.2, 3.5.1.17, 3.5.1.20, 3.5.1.30)\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20315\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20317\"\u003eCVE-2026-20317\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eSecure Workload\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20317\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20318\"\u003eCVE-2026-20318\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCisco Secure Workload\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20318\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20357\"\u003eCVE-2026-20357\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCrosswork\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20357\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\t\t\u003ctr\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"#cve-2026-20358\"\u003eCVE-2026-20358\u003c/a\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eCisco Crosswork Planning (7.0.0, 7.0.1, 7.0.2, 7.0.3, 7.0.4, 7.1.0, 7.1.1, 7.1.2, 7.2.0)\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003eno\u003c/td\u003e\n\t\t\t\t\t\u003ctd\u003e\u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20358\"\u003eNVD\u003c/a\u003e (authoritative)\u003c/td\u003e\n\t\t\t\u003c/tr\u003e\n\t\u003c/tbody\u003e\n\u003c/table\u003e\n\u003ch2 id=\"cve-2026-20267\"\u003eCVE-2026-20267\u003c/h2\u003e\n\u003cp\u003eCisco IOS XE Software contains multiple internally discovered vulnerabilities characterized by improper access control (CWE-284). These vulnerabilities were identified during an internal security review and addressed through software hardening releases, carrying a CVSS base score of 9.0.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20267\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20267\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20272\"\u003eCVE-2026-20272\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20272 represents a critical vulnerability in Cisco IOS XE Software, identified through internal security reviews as an issue involving improper neutralization of special elements, classified under CWE-74. With a CVSS base score of 9.8, the vulnerability allows for potential remote command injection, requiring immediate patching as part of Cisco's software hardening releases.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20272\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20272\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20310\"\u003eCVE-2026-20310\u003c/h2\u003e\n\u003cp\u003eCisco Catalyst SD-WAN is affected by a vulnerability (CVE-2026-20310) resulting from improper link resolution before file access, categorized as CWE-59. This internally discovered issue prompted security hardening updates for the affected platform.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCatalyst SD-WAN\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20310\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20310\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20312\"\u003eCVE-2026-20312\u003c/a\u003e, \u003ca href=\"#cve-2026-20313\"\u003eCVE-2026-20313\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20124\"\u003eCVE-2026-20124\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20124 is a denial of service vulnerability in the SNMP subsystem of Cisco IOS XE Software. An authenticated remote attacker with valid SNMP community strings (v1/v2c) or credentials (v3) can send a malformed SNMP request, causing the device to unexpectedly reload. Detection should focus on monitoring SNMP request traffic for anomalies or malformed packets targeting the SNMP subsystem.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20124\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20124\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20200\"\u003eCVE-2026-20200\u003c/h2\u003e\n\u003cp\u003eCisco IMC contains a vulnerability in its web-based management interface stemming from improper input validation. An authenticated remote attacker with low privileges can leverage this flaw to perform command injection, resulting in the execution of arbitrary commands with root-level privileges on the underlying operating system.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIntegrated Management Controller\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20200\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20200\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20198\"\u003eCVE-2026-20198\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20263\"\u003eCVE-2026-20263\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the Blocks Extensible Exchange Protocol (BEEP) feature of Cisco IOS XE Software allows unauthenticated remote attackers to trigger a device reload via a crafted BEEP SOAP request, resulting in a denial-of-service (DoS) condition.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20263\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20263\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20268\"\u003eCVE-2026-20268\u003c/h2\u003e\n\u003cp\u003eCisco IOS XE Software contains vulnerabilities related to improper restriction of operations within the bounds of a memory buffer, categorized under CWE-119. These issues were discovered during an internal security review and addressed via software hardening releases, carrying a CVSS v3.1 base score of 8.6.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20268\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20268\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20269\"\u003eCVE-2026-20269\u003c/h2\u003e\n\u003cp\u003eCisco IOS XE Software contains multiple internally discovered vulnerabilities related to improper control of a resource through its lifetime, classified under CWE-664. These issues were identified during a proactive internal security review and have been addressed in software hardening releases.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20269\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20269\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20271\"\u003eCVE-2026-20271\u003c/h2\u003e\n\u003cp\u003eCisco IOS XE Software contains multiple vulnerabilities related to insufficient control flow management, categorized under CWE-691. These vulnerabilities were identified through an internal security review, and Cisco has released software updates to address the underlying issues.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20271\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20271\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20273\"\u003eCVE-2026-20273\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20273 refers to an improper input validation vulnerability (CWE-20) in Cisco IOS XE Software. With a CVSS base score of 8.6, this vulnerability is exploitable remotely by an unauthenticated attacker, potentially leading to a denial-of-service condition (AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H).\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20273\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20273\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20301\"\u003eCVE-2026-20301\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the Extensible Messaging Client Protocol (XMCP) implementation within Cisco IOS and IOS XE software allows unauthenticated, remote attackers to trigger a device reload via malformed packets, resulting in a denial-of-service condition.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS Software\u003c/li\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20301\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20301\u003c/a\u003e\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20312\"\u003eCVE-2026-20312\u003c/h2\u003e\n\u003cp\u003eCisco Catalyst SD-WAN software contains a vulnerability identified as CVE-2026-20312 involving the cleartext storage of sensitive information, classified under CWE-312. This vulnerability was identified during an internal security review and addressed through a software hardening release.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCatalyst SD-WAN\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20312\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20312\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20310\"\u003eCVE-2026-20310\u003c/a\u003e, \u003ca href=\"#cve-2026-20313\"\u003eCVE-2026-20313\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20313\"\u003eCVE-2026-20313\u003c/h2\u003e\n\u003cp\u003eCisco Catalyst SD-WAN is affected by a vulnerability involving improper link resolution before file access, categorized under CWE-1284. This vulnerability was identified during an internal security review and addressed via software hardening releases.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCatalyst SD-WAN\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20313\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20313\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20310\"\u003eCVE-2026-20310\u003c/a\u003e, \u003ca href=\"#cve-2026-20312\"\u003eCVE-2026-20312\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20311\"\u003eCVE-2026-20311\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the web-based management interface of Cisco IOS XE Software allows an authenticated, low-privileged remote attacker to trigger a denial-of-service condition. By submitting a malformed certificate to the interface, an attacker can cause the device to reload, resulting in an unexpected service disruption. Cisco has released software updates to address this flaw.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-xe-webui-dos-PtAODAWW?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XE%20Software%20Web-Based%20Management%20Interface%20Denial%20of%20Service%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-xe-webui-dos-PtAODAWW?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XE%20Software%20Web-Based%20Management%20Interface%20Denial%20of%20Service%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20308\"\u003eCVE-2026-20308\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20198\"\u003eCVE-2026-20198\u003c/h2\u003e\n\u003cp\u003eA cross-site scripting (XSS) vulnerability exists in the web-based management interface of the Cisco Integrated Management Controller due to improper input validation. An authenticated remote attacker can exploit this by convincing a user to interact with a malicious link, potentially leading to arbitrary script execution within the victim's browser context.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIntegrated Management Controller\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-7EhBFxBp?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Integrated%20Management%20Controller%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cimc-xss-7EhBFxBp?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Integrated%20Management%20Controller%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20200\"\u003eCVE-2026-20200\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20289\"\u003eCVE-2026-20289\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the logging subsystem of Cisco RoomOS allows an authenticated, local attacker with low privileges to access sensitive information, such as user login credentials, by enabling specific logging levels and accessing system logs. There are no workarounds available, and patching is required.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eRoomOS\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-infodisc-qBXjfmWm?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Logging%20Subsystem%20Information%20Disclosure%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-infodisc-qBXjfmWm?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Logging%20Subsystem%20Information%20Disclosure%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20302\"\u003eCVE-2026-20302\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20294\"\u003eCVE-2026-20294\u003c/h2\u003e\n\u003cp\u003eAn information disclosure vulnerability exists in the web-based management interface of Cisco Catalyst SD-WAN Manager due to insufficient access control on specific template types. Authenticated attackers with low privileges can exploit this to view sensitive authentication credentials in clear text within local or remote logs, potentially leading to escalation of privilege and further infrastructure compromise.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCatalyst SD-WAN Manager\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-infodis-SPuJBDCe?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Manager%20Information%20Disclosure%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-infodis-SPuJBDCe?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Manager%20Information%20Disclosure%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20028\"\u003eCVE-2026-20028\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the Cisco Terminal Services Agent network driver allows an authenticated remote attacker with user-level credentials to bypass firewall rules by incorrectly mapping network connections to user accounts, effectively inheriting the firewall policy of another user.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eTerminal Services Agent\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ts-agent-fw-bypass-MYBTMrev?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Terminal%20Services%20Agent%20Firewall%20Rules%20Bypass%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ts-agent-fw-bypass-MYBTMrev?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Terminal%20Services%20Agent%20Firewall%20Rules%20Bypass%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20308\"\u003eCVE-2026-20308\u003c/h2\u003e\n\u003cp\u003eAn authenticated remote attacker with low privileges can trigger a denial of service (DoS) condition in the web-based management interface of Cisco IOS XE Software by sending crafted input, resulting in the interface becoming unresponsive due to insufficient input validation.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIOS XE Software\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webui-dos-qdc7qx3?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XE%20Software%20Web-Based%20Management%20Interface%20Denial%20of%20Service%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webui-dos-qdc7qx3?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XE%20Software%20Web-Based%20Management%20Interface%20Denial%20of%20Service%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20267\"\u003eCVE-2026-20267\u003c/a\u003e, \u003ca href=\"#cve-2026-20272\"\u003eCVE-2026-20272\u003c/a\u003e, \u003ca href=\"#cve-2026-20124\"\u003eCVE-2026-20124\u003c/a\u003e, \u003ca href=\"#cve-2026-20263\"\u003eCVE-2026-20263\u003c/a\u003e, \u003ca href=\"#cve-2026-20268\"\u003eCVE-2026-20268\u003c/a\u003e, \u003ca href=\"#cve-2026-20269\"\u003eCVE-2026-20269\u003c/a\u003e, \u003ca href=\"#cve-2026-20271\"\u003eCVE-2026-20271\u003c/a\u003e, \u003ca href=\"#cve-2026-20273\"\u003eCVE-2026-20273\u003c/a\u003e, \u003ca href=\"#cve-2026-20311\"\u003eCVE-2026-20311\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20337\"\u003eCVE-2026-20337\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20337 is an out-of-bounds write vulnerability in the ClamAV zip archive parser caused by improper boundary checks. An unauthenticated remote attacker can exploit this by submitting a specially crafted zip file for scanning, triggering a process termination that results in a Denial of Service (DoS) condition.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eClamAV\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20337\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20337\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20338\"\u003eCVE-2026-20338\u003c/a\u003e, \u003ca href=\"#cve-2026-20339\"\u003eCVE-2026-20339\u003c/a\u003e, \u003ca href=\"#cve-2026-20345\"\u003eCVE-2026-20345\u003c/a\u003e, \u003ca href=\"#cve-2026-20346\"\u003eCVE-2026-20346\u003c/a\u003e, \u003ca href=\"#cve-2026-20347\"\u003eCVE-2026-20347\u003c/a\u003e, \u003ca href=\"#cve-2026-20348\"\u003eCVE-2026-20348\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20338\"\u003eCVE-2026-20338\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the ClamAV zip archive parser exists due to improper memory handling when processing malicious zip files. An unauthenticated, remote attacker can exploit this via a crafted file submission to trigger a double-free condition, causing the scanning process to crash and resulting in a denial-of-service state.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eClamAV\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20338\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20338\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20337\"\u003eCVE-2026-20337\u003c/a\u003e, \u003ca href=\"#cve-2026-20339\"\u003eCVE-2026-20339\u003c/a\u003e, \u003ca href=\"#cve-2026-20345\"\u003eCVE-2026-20345\u003c/a\u003e, \u003ca href=\"#cve-2026-20346\"\u003eCVE-2026-20346\u003c/a\u003e, \u003ca href=\"#cve-2026-20347\"\u003eCVE-2026-20347\u003c/a\u003e, \u003ca href=\"#cve-2026-20348\"\u003eCVE-2026-20348\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20339\"\u003eCVE-2026-20339\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20339 is a vulnerability within the ClamAV PESpin file format parser caused by improper boundary checks. An unauthenticated remote attacker can submit a maliciously crafted file for scanning, triggering an integer overflow and memory corruption. This allows the attacker to terminate the ClamAV scanning process, resulting in a Denial of Service (DoS) condition.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eClamAV\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20339\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20339\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20337\"\u003eCVE-2026-20337\u003c/a\u003e, \u003ca href=\"#cve-2026-20338\"\u003eCVE-2026-20338\u003c/a\u003e, \u003ca href=\"#cve-2026-20345\"\u003eCVE-2026-20345\u003c/a\u003e, \u003ca href=\"#cve-2026-20346\"\u003eCVE-2026-20346\u003c/a\u003e, \u003ca href=\"#cve-2026-20347\"\u003eCVE-2026-20347\u003c/a\u003e, \u003ca href=\"#cve-2026-20348\"\u003eCVE-2026-20348\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20345\"\u003eCVE-2026-20345\u003c/h2\u003e\n\u003cp\u003eA vulnerability exists in the GPT file format parser of ClamAV due to improper endian conversion, leading to an out-of-bounds buffer write. An unauthenticated remote attacker can exploit this by submitting a malicious GPT file for scanning, triggering a denial-of-service (DoS) condition via process termination or potential memory corruption.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eClamAV\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20345\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20345\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20337\"\u003eCVE-2026-20337\u003c/a\u003e, \u003ca href=\"#cve-2026-20338\"\u003eCVE-2026-20338\u003c/a\u003e, \u003ca href=\"#cve-2026-20339\"\u003eCVE-2026-20339\u003c/a\u003e, \u003ca href=\"#cve-2026-20346\"\u003eCVE-2026-20346\u003c/a\u003e, \u003ca href=\"#cve-2026-20347\"\u003eCVE-2026-20347\u003c/a\u003e, \u003ca href=\"#cve-2026-20348\"\u003eCVE-2026-20348\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20346\"\u003eCVE-2026-20346\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20346 is a vulnerability in the ClamAV PDF file parser caused by improper boundary checks during file scanning. This flaw leads to an out-of-bounds buffer read, which an unauthenticated remote attacker can exploit by submitting a specially crafted PDF file. Successful exploitation allows the attacker to cause a denial-of-service (DoS) condition by crashing the ClamAV scanning process.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eClamAV\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20346\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20346\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20337\"\u003eCVE-2026-20337\u003c/a\u003e, \u003ca href=\"#cve-2026-20338\"\u003eCVE-2026-20338\u003c/a\u003e, \u003ca href=\"#cve-2026-20339\"\u003eCVE-2026-20339\u003c/a\u003e, \u003ca href=\"#cve-2026-20345\"\u003eCVE-2026-20345\u003c/a\u003e, \u003ca href=\"#cve-2026-20347\"\u003eCVE-2026-20347\u003c/a\u003e, \u003ca href=\"#cve-2026-20348\"\u003eCVE-2026-20348\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20347\"\u003eCVE-2026-20347\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the Mach-O file format parser within ClamAV allows an unauthenticated remote attacker to trigger an out-of-bounds read by submitting a maliciously crafted file. Successful exploitation leads to a crash of the scanning process, resulting in a denial-of-service (DoS) condition.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eClamAV\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20347\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20347\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20337\"\u003eCVE-2026-20337\u003c/a\u003e, \u003ca href=\"#cve-2026-20338\"\u003eCVE-2026-20338\u003c/a\u003e, \u003ca href=\"#cve-2026-20339\"\u003eCVE-2026-20339\u003c/a\u003e, \u003ca href=\"#cve-2026-20345\"\u003eCVE-2026-20345\u003c/a\u003e, \u003ca href=\"#cve-2026-20346\"\u003eCVE-2026-20346\u003c/a\u003e, \u003ca href=\"#cve-2026-20348\"\u003eCVE-2026-20348\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20348\"\u003eCVE-2026-20348\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20348 describes a memory corruption vulnerability in the XAR file parser of ClamAV caused by improper boundary checks. An unauthenticated remote attacker can exploit this by submitting a crafted XAR file for scanning, leading to a denial-of-service (DoS) condition via the termination of the scanning process.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eClamAV\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20348\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20348\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20337\"\u003eCVE-2026-20337\u003c/a\u003e, \u003ca href=\"#cve-2026-20338\"\u003eCVE-2026-20338\u003c/a\u003e, \u003ca href=\"#cve-2026-20339\"\u003eCVE-2026-20339\u003c/a\u003e, \u003ca href=\"#cve-2026-20345\"\u003eCVE-2026-20345\u003c/a\u003e, \u003ca href=\"#cve-2026-20346\"\u003eCVE-2026-20346\u003c/a\u003e, \u003ca href=\"#cve-2026-20347\"\u003eCVE-2026-20347\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20349\"\u003eCVE-2026-20349\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the Remote Access SSL VPN service of Cisco Secure Firewall ASA and FTD software allows an unauthenticated, remote attacker to trigger an unexpected device reload via a crafted HTTP request. This results in a denial of service (DoS) condition due to improper error handling during request processing.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAdaptive Security Appliance\u003c/li\u003e\n\u003cli\u003eSecure Firewall Threat Defense\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-vpn-dos-dzv4mQFF?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20Remote%20Access%20SSL%20VPN%20Denial%20of%20Service%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-vpn-dos-dzv4mQFF?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20Remote%20Access%20SSL%20VPN%20Denial%20of%20Service%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20232\"\u003eCVE-2026-20232\u003c/h2\u003e\n\u003cp\u003eCisco Industrial Ethernet 1000 Series Switches contain a stored cross-site scripting (XSS) vulnerability in the web-based management interface. The flaw arises from improper input validation, allowing an authenticated remote attacker to inject arbitrary scripts that execute in the context of other users viewing the affected interface pages.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIndustrial Ethernet 1000 Series Switches\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ie1k-NgXUFF52?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Industrial%20Ethernet%201000%20Series%20Switches%20Stored%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ie1k-NgXUFF52?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Industrial%20Ethernet%201000%20Series%20Switches%20Stored%20Cross-Site%20Scripting%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20177\"\u003eCVE-2026-20177\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20314\"\u003eCVE-2026-20314\u003c/h2\u003e\n\u003cp\u003eCisco Packaged Contact Center Enterprise and Unified Contact Center Enterprise contain an SSRF vulnerability due to improper input validation of HTTP requests. An authenticated remote attacker can exploit this by sending a crafted HTTP request to the device, allowing the execution of arbitrary network requests from the context of the vulnerable system.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ePackaged Contact Center Enterprise\u003c/li\u003e\n\u003cli\u003eUnified Contact Center Enterprise\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-ssrf-TghHxD?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Packaged%20Contact%20Center%20Enterprise%20and%20Cisco%20Unified%20Contact%20Center%20Enterprise%20Server-Side%20Request%20Forgery%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucce-pcce-ssrf-TghHxD?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Packaged%20Contact%20Center%20Enterprise%20and%20Cisco%20Unified%20Contact%20Center%20Enterprise%20Server-Side%20Request%20Forgery%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20327\"\u003eCVE-2026-20327\u003c/h2\u003e\n\u003cp\u003eCisco Unified Intelligence Center contains a blind SQL injection vulnerability in its web-based management interface. An authenticated, local attacker with valid credentials can exploit insufficient input validation to send a crafted request, allowing unauthorized access to read the contents of the device's internal database.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eUnified Intelligence Center\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuic-sql-inject-2qbfWSm5?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unified%20Intelligence%20Center%20SQL%20Injection%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuic-sql-inject-2qbfWSm5?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Unified%20Intelligence%20Center%20SQL%20Injection%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20177\"\u003eCVE-2026-20177\u003c/h2\u003e\n\u003cp\u003eA vulnerability in Cisco Industrial Ethernet 1000 Series Switches allows an unauthenticated, remote attacker to trigger a denial-of-service condition for management services including the web GUI, SSH, and API. The vulnerability is caused by insufficient protection against management plane flooding, where a high volume of ICMP, SSH, or HTTP traffic causes excessive CPU utilization. While management access is impacted, transit data traffic is not affected.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIndustrial Ethernet 1000 Series Switches\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ie1k-uxq86Lnx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Industrial%20Ethernet%201000%20Series%20Switches%20Denial%20of%20Service%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ie1k-uxq86Lnx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Industrial%20Ethernet%201000%20Series%20Switches%20Denial%20of%20Service%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20232\"\u003eCVE-2026-20232\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20302\"\u003eCVE-2026-20302\u003c/h2\u003e\n\u003cp\u003eA vulnerability in the USB driver of Cisco RoomOS allows an unauthenticated, local attacker with physical access to a USB port to trigger a buffer overflow condition. Successful exploitation enables the execution of arbitrary code with root privileges.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eRoomOS\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-bof-vTMANZgu?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Stack%20Overflow%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-bof-vTMANZgu?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20RoomOS%20Stack%20Overflow%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20289\"\u003eCVE-2026-20289\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20320\"\u003eCVE-2026-20320\u003c/h2\u003e\n\u003cp\u003eA high-severity XML External Entity (XXE) vulnerability in the Open Client Interface (OCI) XML parser of Cisco BroadWorks allows unauthenticated remote attackers to read sensitive configuration files. The vulnerability stems from improper XML parsing where external entity resolution is enabled by default. Attackers can exploit this by sending crafted XML messages to the OCI-P service, potentially leaking filesystem data with the privileges of the BroadWorks service user.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eBroadWorks\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bworks-xxe-uwUd7CEt?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20BroadWorks%20Out-of-Band%20Blind%20XML%20External%20Entity%20Injection%20Vulnerability%26vs_k=1\"\u003ehttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bworks-xxe-uwUd7CEt?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20BroadWorks%20Out-of-Band%20Blind%20XML%20External%20Entity%20Injection%20Vulnerability%26vs_k=1\u003c/a\u003e\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20030\"\u003eCVE-2026-20030\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20030 represents a vulnerability in Cisco Crosswork related to improper neutralization of special elements used in a SQL command, categorized under CWE-89. This vulnerability allows for potential SQL injection attacks and carries a critical CVSS v3.1 base score of 10.0.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCrosswork\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20030\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20030\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20357\"\u003eCVE-2026-20357\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20231\"\u003eCVE-2026-20231\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20231 identifies a vulnerability in Cisco Secure Workload related to the improper neutralization of special elements, categorized under CWE-74. This vulnerability was internally discovered during a security review and addressed via a software hardening release. The vulnerability carries a high CVSS base score of 9.9.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eSecure Workload\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20231\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20231\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20317\"\u003eCVE-2026-20317\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20315\"\u003eCVE-2026-20315\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20315 refers to multiple improper access control vulnerabilities identified in Cisco Secure Workload. These vulnerabilities have a CVSS base score of 10.0, indicating a critical severity that could allow an unauthenticated attacker to gain unauthorized access or perform actions with elevated privileges within the application environment. Security teams should prioritize patching affected versions identified in the vendor advisory.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCisco Secure Workload (2.0.1.34, 2.0.2.20, 2.1.1.29, 2.1.1.31, 2.1.1.33, 2.2.1.35, 2.2.1.39, 2.2.1.41, 2.3.1.41, 2.3.1.45, 2.3.1.49, 2.3.1.50, 2.3.1.51, 2.3.1.52, 2.3.1.53, 1.103.1.12, 3.1.1.53, 3.1.1.54, 3.1.1.55, 3.1.1.59, 3.1.1.61, 3.1.1.65, 3.1.1.67, 3.1.1.70, 3.2.1.18, 3.2.1.19, 3.2.1.20, 3.2.1.28, 3.3.2.12, 3.3.2.16, 3.3.2.23, 3.3.2.28, 3.3.2.33, 3.3.2.42, 3.3.2.50, 3.4.1.1, 3.4.1.6, 3.4.1.19, 3.4.1.28, 3.4.1.34, 3.4.1.35, 3.5.1.1, 3.5.1.2, 3.5.1.17, 3.5.1.20, 3.5.1.30)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20315\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20315\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20318\"\u003eCVE-2026-20318\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20317\"\u003eCVE-2026-20317\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20317 identifies a critical improper authentication vulnerability (CWE-287) in Cisco Secure Workload. With a CVSS 3.1 base score of 10.0, the vulnerability allows for unauthenticated, remote exploitation that can impact the confidentiality, integrity, or availability of the affected system. Detection engineers should ensure that instances of Cisco Secure Workload are updated to the latest hardening release provided by the vendor.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eSecure Workload\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20317\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20317\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20231\"\u003eCVE-2026-20231\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20318\"\u003eCVE-2026-20318\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20318 describes an improper input validation vulnerability (CWE-20) affecting Cisco Secure Workload. The vulnerability, which carries a CVSS base score of 9.6, may allow for unauthorized integrity or availability impacts. It was discovered during an internal security review and addressed through a software hardening release.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCisco Secure Workload\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20318\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20318\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20315\"\u003eCVE-2026-20315\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20357\"\u003eCVE-2026-20357\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20357 identifies a missing authentication vulnerability in Cisco Crosswork. This flaw, categorized under CWE-306, allows unauthenticated attackers to perform critical functions, warranting a CVSS v3.1 base score of 10.0.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCrosswork\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20357\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20357\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eRelated in this roundup: \u003ca href=\"#cve-2026-20030\"\u003eCVE-2026-20030\u003c/a\u003e.\u003c/p\u003e\n\u003ch2 id=\"cve-2026-20358\"\u003eCVE-2026-20358\u003c/h2\u003e\n\u003cp\u003eCVE-2026-20358 is a critical vulnerability (CVSS 10.0) identified in Cisco Crosswork Planning that allows for external control of file names or paths (CWE-73). An attacker could exploit this vulnerability to achieve unauthorized file system access, potentially leading to significant integrity and availability impacts.\u003c/p\u003e\n\u003cp\u003eAffected products:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eCisco Crosswork Planning (7.0.0, 7.0.1, 7.0.2, 7.0.3, 7.0.4, 7.1.0, 7.1.1, 7.1.2, 7.2.0)\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eSource: \u003ca href=\"https://nvd.nist.gov/vuln/detail/CVE-2026-20358\"\u003ehttps://nvd.nist.gov/vuln/detail/CVE-2026-20358\u003c/a\u003e\u003c/p\u003e\n","date_modified":"2026-08-19T18:38:09Z","date_published":"2026-08-05T17:20:12Z","id":"https://feed.craftedsignal.io/briefs/2026-08-cisco-security-updates/","summary":"Roundup of Cisco security advisories published in August 2026.","title":"Cisco Security Updates - August 2026","url":"https://feed.craftedsignal.io/briefs/2026-08-cisco-security-updates/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:o:cisco:roomos:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}