CVE-2026-20304
published 2026-08-05CVE-2026-20304: As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive…
PriorityP260critical9.9CVSS 3.1
AVNACLPRLUINSCCHIHAH
EPSS
0.28%
20.0th percentile
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that address multiple internally discovered vulnerabilities.
The vulnerabilities tracked by CVE-2026-20304 are related to improper access control issues that are grouped under the Common Weakness Enumeration (CWE) CWE-284.
Affected
540 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
| cisco | cisco_catalyst_sd-wan_controller | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Hackernews
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
blogs_hackernews·2026-08-10
CVE-2026-34348 ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
Home
Threat Intelligence
Vulnerabilities
Cyber Attacks
Webinars
Expert Insights
Awards
Webinars
Awards
Free eBooks
About THN
Jobs
Advertise with us
## ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
A lot of security problems still begin with someone doing a completely normal thing. Cloning a repo. Answering a call. Leaving a box exposed. Trusting the default.
That pretty much covers the mood this week. Old bugs are back, supply chains are getting stranger, and some exploit paths are so short you wonder what was supposed to stop them in the first place.
That’s only part of it. Here’s everything else that made the Monday recap.
## ⚡ Threat of the Week
Anthropic's Model Attempts to Poison Open-Source Project — A new evaluati
Hackernews
Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs
blogs_hackernews·2026-08-06·CVSS 9.0
CVE-2026-20303 [CRITICAL] Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs
Home
Threat Intelligence
Vulnerabilities
Cyber Attacks
Webinars
Expert Insights
Awards
Webinars
Awards
Free eBooks
About THN
Jobs
Advertise with us
## Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs
Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS XE Software as part of a comprehensive internal security review.
The security issues affect Cisco Catalyst SD-WAN Software, regardless of device configuration, and Cisco IOS XE Software when it is running in autonomous or controller mode.
"These vulnerabilities were found during internal security testing using existing testing processes as well as frontier AI models [...] and are not known to be actively exploited," Cisco said, urgi
2026-08-05
Published