By The Hacker News
Publication Date: 2026-08-06 17:13:00
Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS XE Software as part of a comprehensive internal security review.
The security issues affect Cisco Catalyst SD-WAN Software, regardless of device configuration, and Cisco IOS XE Software when it is running in autonomous or controller mode.
“These vulnerabilities were found during internal security testing using existing testing processes as well as frontier AI models […] and are not known to be actively exploited,” Cisco said, urging customers to apply the necessary updates for optimal protection.
The vulnerabilities impacting Catalyst SD-WAN Software are listed below –
- CVE-2026-20303 (CVSS score: 9.9) – An improper input validation vulnerability (which also covers path traversals)
- CVE-2026-20304 (CVSS score: 9.9) – An improper access control vulnerability
- CVE-2026-20310 (CVSS score:…

