Cisco SD-WAN Faces Exploitation of High-Severity Zero-Day Vulnerability

A critical zero-day vulnerability in Cisco's SD-WAN management software is currently being exploited, with no patch available yet.

A critical zero-day vulnerability in Cisco's SD-WAN management software is currently being exploited, with no patch available yet.

Cisco has identified a severe authentication bypass vulnerability in its Catalyst SD-WAN Controller, which is currently being exploited in limited attacks. The flaw, tracked as CVE-2026-20182, allows unauthorized remote access to administrative privileges.

CISA has issued an urgent warning regarding three vulnerabilities in Cisco's Catalyst SD-WAN Manager, urging federal agencies to apply patches within four days.

Cisco has confirmed that two vulnerabilities in its SD-WAN management software are currently being exploited, posing risks of file overwrites and privilege escalation.

The Five Eyes intelligence alliance has issued a joint alert regarding two critical vulnerabilities in Cisco Catalyst SD-WAN devices, urging organizations to take immediate action.