{"total":51,"items":[{"id":663,"title":"Cisco IOS XE Software Security Hardening Release: August 2026","original_title":"Cisco IOS XE Software Security Hardening Release: August 2026","source_rating":null,"summary":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-iosxe-V8NMuMZJ?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XE%20Software%20Security%20Hardening%20Release:%20August%202026%26vs_k=1","type":"advisory","language":"en","published_at":"2026-10-02T19:21:28+00:00","severity":"laag","priority":15,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20272","cvss":9.8,"epss":0.00573,"epss_percentile":0.45354,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20271","cvss":8.6,"epss":0.00467,"epss_percentile":0.3821,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20273","cvss":8.6,"epss":0.00467,"epss_percentile":0.38211,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20270","cvss":8.6,"epss":0.00467,"epss_percentile":0.38212,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20269","cvss":8.6,"epss":0.00467,"epss_percentile":0.38212,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20268","cvss":8.6,"epss":0.00467,"epss_percentile":0.3821,"in_kev":false,"kev_ransomware":false}],"cve_count":7,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":9.8,"epss_max":0.00573,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":236,"title":"Cisco Advance Notification for Publication of October 7, 2026, Security Advisories","original_title":"Cisco Advance Notification for Publication of October 7, 2026, Security Advisories","source_rating":null,"summary":"On October 7, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releases for the…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-fBn58ELx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Advance%20Notification%20for%20Publication%20of%20October%207,%202026,%20Security%20Advisories%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-30T16:00:00+00:00","severity":"laag","priority":0,"vendors":["Cisco"],"cves":[],"cve_count":0,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":null,"epss_max":null,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":237,"title":"Cisco Catalyst SD-WAN Manager API Authentication Bypass Vulnerability","original_title":"Cisco Catalyst SD-WAN Manager API Authentication Bypass Vulnerability","source_rating":null,"summary":"A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to access an affected system with privileges of…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-webauth-xr8beuuU?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Catalyst%20SD-WAN%20Manager%20API%20Authentication%20Bypass%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-30T13:00:00+00:00","severity":"hoog","priority":55,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-76504","cvss":9.8,"epss":0.01575,"epss_percentile":0.74572,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":9.8,"epss_max":0.01575,"source_count":2,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":238,"title":"Cisco Identity Services Engine Authentication Bypass Vulnerabilities","original_title":"Cisco Identity Services Engine Authentication Bypass Vulnerabilities","source_rating":null,"summary":"Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to access or manipulate data, obtain sensitive…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multiauth-bypass-sgD2HbL4?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Authentication%20Bypass%20Vulnerabilities%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-24T17:16:37+00:00","severity":"laag","priority":0,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-76447","cvss":5.3,"epss":0.00376,"epss_percentile":0.29178,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-76439","cvss":5.3,"epss":0.00324,"epss_percentile":0.2322,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-76446","cvss":4.9,"epss":0.00303,"epss_percentile":0.20902,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-76444","cvss":5.3,"epss":0.00286,"epss_percentile":0.19155,"in_kev":false,"kev_ransomware":false}],"cve_count":4,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":5.3,"epss_max":0.00376,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":239,"title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability","source_rating":null,"summary":"Update for September 16, 2026: The original 1.0 version of this advisory was specific to the Cisco Adaptive Security Virtual Appliance (ASAv) and Cisco Secure Firewall Threat Defense Virtual (FTDv)…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftdvirtual-dos-MuenGnYR?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20SSL%20VPN%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-23T13:26:33+00:00","severity":"laag","priority":8,"vendors":["Cisco"],"cves":[{"id":"CVE-2024-20260","cvss":8.6,"epss":0.00594,"epss_percentile":0.46482,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":8.6,"epss_max":0.00594,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":240,"title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in the system rate-limiting process for syslog message 419002 of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD)…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-ftd-logging-dos-ZXXNesfN?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20Logging%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-18T15:50:56+00:00","severity":"laag","priority":8,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20154","cvss":8.6,"epss":0.00404,"epss_percentile":0.32257,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":8.6,"epss_max":0.00404,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":241,"title":"Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026","original_title":"Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026","source_rating":null,"summary":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat Defense (FTD)…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-asaftdfmc-uvpPROhN?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance,%20Secure%20Firewall%20Threat%20Defense,%20and%20Secure%20Firewall%20Management%20Center%20Software%20Hardening%20Release:%20September%202026%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-18T15:50:33+00:00","severity":"laag","priority":15,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20329","cvss":9.9,"epss":0.00446,"epss_percentile":0.36508,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20330","cvss":9.9,"epss":0.00336,"epss_percentile":0.24653,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20333","cvss":8.8,"epss":0.00315,"epss_percentile":0.22127,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20332","cvss":9.9,"epss":0.00301,"epss_percentile":0.20709,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20335","cvss":8.1,"epss":0.00281,"epss_percentile":0.18687,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20334","cvss":8.4,"epss":0.00264,"epss_percentile":0.16615,"in_kev":false,"kev_ransomware":false}],"cve_count":8,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":9.9,"epss_max":0.00446,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":242,"title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Secure Firewall 3100 and 4200 Series DTLS Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Secure Firewall 3100 and 4200 Series DTLS Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in Datagram TLS (DTLS) message handling of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software for Cisco Secure…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-dtls-dos-Kp57HkyO?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20for%20Secure%20Firewall%203100%20and%204200%20Series%20DTLS%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-18T15:50:31+00:00","severity":"laag","priority":8,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20250","cvss":8.6,"epss":0.00549,"epss_percentile":0.43953,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":8.6,"epss_max":0.00549,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":243,"title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software IKEv2 Certificate Authentication Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software IKEv2 Certificate Authentication Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in the certification authentication feature of Internet Key Exchange version 2 (IKEv2) for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-ikev2cert-dos-uWyc2xtv?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20IKEv2%20Certificate%20Authentication%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-18T15:50:30+00:00","severity":"laag","priority":8,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20249","cvss":8.6,"epss":0.00399,"epss_percentile":0.31775,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":8.6,"epss_max":0.00399,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":244,"title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Object Group Access Control List Bypass Vulnerabilities","original_title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Object Group Access Control List Bypass Vulnerabilities","source_rating":null,"summary":"Multiple vulnerabilities in the access control list (ACL) Object Group Search (OGS) implementation of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-acl-bypass-8p6vFvw?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20Object%20Group%20Access%20Control%20List%20Bypass%20Vulnerabilities%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-18T15:50:30+00:00","severity":"laag","priority":0,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20121","cvss":5.3,"epss":0.00487,"epss_percentile":0.39714,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20120","cvss":5.8,"epss":0.00406,"epss_percentile":0.32539,"in_kev":false,"kev_ransomware":false}],"cve_count":2,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":5.8,"epss_max":0.00487,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":245,"title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software TCP DNS Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software TCP DNS Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in the DNS over TCP implementation of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-tcpdns-dos-p6dUnjr5?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20TCP%20DNS%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-18T15:50:29+00:00","severity":"laag","priority":0,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20248","cvss":6.8,"epss":0.0034,"epss_percentile":0.25107,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":6.8,"epss_max":0.0034,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":246,"title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software EIGRP Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software EIGRP Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in the EIGRP implementation in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-eigrp-dos-GOhNejSj?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20EIGRP%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-18T15:50:28+00:00","severity":"laag","priority":8,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20222","cvss":7.4,"epss":0.00167,"epss_percentile":0.0543,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":7.4,"epss_max":0.00167,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":247,"title":"Cisco IOS XR Software Security Hardening Release: September 2026","original_title":"Cisco IOS XR Software Security Hardening Release: September 2026","source_rating":null,"summary":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-iosxr-qg64NcM?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20IOS%20XR%20Software%20Security%20Hardening%20Release:%20September%202026%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-17T21:13:28+00:00","severity":"laag","priority":15,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20274","cvss":9.8,"epss":0.00731,"epss_percentile":0.52652,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20279","cvss":9.8,"epss":0.00301,"epss_percentile":0.20757,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20278","cvss":8.8,"epss":0.00299,"epss_percentile":0.20479,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20280","cvss":8.8,"epss":0.00292,"epss_percentile":0.19784,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20276","cvss":8.6,"epss":0.00267,"epss_percentile":0.17077,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20277","cvss":8.2,"epss":0.00233,"epss_percentile":0.12832,"in_kev":false,"kev_ransomware":false}],"cve_count":7,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":9.8,"epss_max":0.00731,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":248,"title":"Cisco Secure Email Gateway SQL Injection Vulnerability","original_title":"Cisco Secure Email Gateway SQL Injection Vulnerability","source_rating":null,"summary":"A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Email%20Gateway%20SQL%20Injection%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-17T16:47:12+00:00","severity":"hoog","priority":65,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-76461","cvss":9.8,"epss":0.28269,"epss_percentile":0.98068,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":9.8,"epss_max":0.28269,"source_count":2,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":249,"title":"Cisco Advance Notification for Publication of September 16, 2026, Security Advisories","original_title":"Cisco Advance Notification for Publication of September 16, 2026, Security Advisories","source_rating":null,"summary":"On September 16, 2026, the Cisco Product Security Incident Response Team (PSIRT) published the advisories that are listed in the following tables. To remediate these vulnerabilities, Cisco strongly…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-jfxK98ZP?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Advance%20Notification%20for%20Publication%20of%20September%2016,%202026,%20Security%20Advisories%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:07:26+00:00","severity":"kritiek","priority":75,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-76460","cvss":10.0,"epss":0.14026,"epss_percentile":0.96453,"in_kev":true,"kev_ransomware":false},{"id":"CVE-2026-20305","cvss":9.1,"epss":0.01406,"epss_percentile":0.71636,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20306","cvss":9.1,"epss":0.01367,"epss_percentile":0.70881,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20307","cvss":9.9,"epss":0.00955,"epss_percentile":0.60018,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-76424","cvss":7.2,"epss":0.00917,"epss_percentile":0.58821,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20176","cvss":9.1,"epss":0.00781,"epss_percentile":0.54362,"in_kev":false,"kev_ransomware":false}],"cve_count":24,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":10.0,"epss_max":0.14026,"source_count":3,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":250,"title":"Cisco Secure Firewall Management Center Software Static Credential Vulnerability","original_title":"Cisco Secure Firewall Management Center Software Static Credential Vulnerability","source_rating":null,"summary":"A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-static-cred-BET3Cjh?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Management%20Center%20Software%20Static%20Credential%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:05:47+00:00","severity":"hoog","priority":60,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20316","cvss":5.3,"epss":0.35096,"epss_percentile":0.98397,"in_kev":true,"kev_ransomware":true}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":true,"cvss_max":5.3,"epss_max":0.35096,"source_count":2,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":251,"title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remote Access SSL VPN Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asaftd-vpn-dos-dzv4mQFF?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Adaptive%20Security%20Appliance%20and%20Secure%20Firewall%20Threat%20Defense%20Software%20Remote%20Access%20SSL%20VPN%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:05:42+00:00","severity":"hoog","priority":48,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20349","cvss":8.6,"epss":0.0101,"epss_percentile":0.61865,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":8.6,"epss_max":0.0101,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":252,"title":"Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability","original_title":"Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability","source_rating":null,"summary":"A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Management%20Center%20Software%20Authentication%20Bypass%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:03:19+00:00","severity":"kritiek","priority":85,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20079","cvss":10.0,"epss":0.8818,"epss_percentile":0.99765,"in_kev":true,"kev_ransomware":false}],"cve_count":1,"in_kev":true,"exploited_by":["CISA KEV","ENISA EUVD"],"kev_ransomware":false,"cvss_max":10.0,"epss_max":0.8818,"source_count":3,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":275,"title":"Cisco Identity Services Engine SQL Injection Vulnerabilities","original_title":"Cisco Identity Services Engine SQL Injection Vulnerabilities","source_rating":null,"summary":"Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow a remote attacker to conduct SQL injection attacks on an affected device. For more information about these…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-sql-inj-3QTKR947?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20SQL%20Injection%20Vulnerabilities%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":8,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20247","cvss":7.5,"epss":0.00323,"epss_percentile":0.23022,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20300","cvss":7.1,"epss":0.00292,"epss_percentile":0.19733,"in_kev":false,"kev_ransomware":false}],"cve_count":2,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":7.5,"epss_max":0.00323,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":258,"title":"Cisco Identity Services Engine RADIUS Denial of Service Vulnerability","original_title":"Cisco Identity Services Engine RADIUS Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in the RADIUS feature of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-RADIUS-dos-wR3hYPMw?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20RADIUS%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":8,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20352","cvss":8.6,"epss":0.00404,"epss_percentile":0.32291,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":8.6,"epss_max":0.00404,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":260,"title":"Cisco Secure Firewall Threat Defense Software TLS 1.3 Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Threat Defense Software TLS 1.3 Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-tls1.3-dos-dLxwFWgF?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Threat%20Defense%20Software%20TLS%201.3%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":8,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20135","cvss":8.6,"epss":0.00457,"epss_percentile":0.37389,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":8.6,"epss_max":0.00457,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":261,"title":"Cisco Identity Services Engine 802.1X Session Hijack and Information Disclosure Vulnerabilities","original_title":"Cisco Identity Services Engine 802.1X Session Hijack and Information Disclosure Vulnerabilities","source_rating":null,"summary":"Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an unauthenticated, local attacker to either conduct an authentication bypass or disclose sensitive information. For more…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-vuln-kWLeNnRD?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20802.1X%20Session%20Hijack%20and%20Information%20Disclosure%20Vulnerabilities%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":0,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20072","cvss":4.9,"epss":0.00371,"epss_percentile":0.28678,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20071","cvss":3.8,"epss":0.00146,"epss_percentile":0.03255,"in_kev":false,"kev_ransomware":false}],"cve_count":2,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":4.9,"epss_max":0.00371,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":262,"title":"Cisco Secure Firewall Management Center Software Vulnerabilities","original_title":"Cisco Secure Firewall Management Center Software Vulnerabilities","source_rating":null,"summary":"Multiple vulnerabilities in Cisco Secure Firewall Management Center (FMC) Software could allow a remote attacker to gain root access, download sensitive files, perform a SQL injection attack, or…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-fmc-mulivulns-4PsnFwvx?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Management%20Center%20Software%20Vulnerabilities%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":15,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20340","cvss":8.8,"epss":0.00694,"epss_percentile":0.51244,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20342","cvss":7.7,"epss":0.0055,"epss_percentile":0.44042,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20343","cvss":7.5,"epss":0.0045,"epss_percentile":0.36866,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20341","cvss":9.1,"epss":0.00445,"epss_percentile":0.3644,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20344","cvss":8.8,"epss":0.00372,"epss_percentile":0.28797,"in_kev":false,"kev_ransomware":false}],"cve_count":5,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":9.1,"epss_max":0.00694,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":272,"title":"Cisco Nexus Dashboard Software Security Hardening Release: September 2026","original_title":"Cisco Nexus Dashboard Software Security Hardening Release: September 2026","source_rating":null,"summary":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Nexus Dashboard engineering team has conducted a comprehensive internal security review. This review…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-ndw1-psFvnrg?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Nexus%20Dashboard%20Software%20Security%20Hardening%20Release:%20September%202026%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":15,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-76409","cvss":8.8,"epss":0.00532,"epss_percentile":0.42945,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20326","cvss":9.8,"epss":0.00387,"epss_percentile":0.30425,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20325","cvss":9.9,"epss":0.0034,"epss_percentile":0.25231,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20360","cvss":8.8,"epss":0.00315,"epss_percentile":0.22177,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20361","cvss":8.8,"epss":0.00282,"epss_percentile":0.18823,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20322","cvss":9.9,"epss":0.00274,"epss_percentile":0.17982,"in_kev":false,"kev_ransomware":false}],"cve_count":6,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":9.9,"epss_max":0.00532,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":274,"title":"Cisco Identity Services Engine SQL and HQL Injection Vulnerabilities","original_title":"Cisco Identity Services Engine SQL and HQL Injection Vulnerabilities","source_rating":null,"summary":"Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct SQL or HQL injection…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multisql-inject-JnHK54Rq?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20SQL%20and%20HQL%20Injection%20Vulnerabilities%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":0,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-76451","cvss":4.9,"epss":0.00426,"epss_percentile":0.3461,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-76450","cvss":4.9,"epss":0.00426,"epss_percentile":0.34611,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-76449","cvss":4.9,"epss":0.00426,"epss_percentile":0.3461,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-76448","cvss":4.9,"epss":0.00426,"epss_percentile":0.3461,"in_kev":false,"kev_ransomware":false}],"cve_count":4,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":4.9,"epss_max":0.00426,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":253,"title":"Cisco Identity Services Engine Information Disclosure Vulnerability","original_title":"Cisco Identity Services Engine Information Disclosure Vulnerability","source_rating":null,"summary":"A vulnerability in the API of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to view sensitive information on an affected device. To exploit this vulnerability,…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-inf-disc-LFWvcCu?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Information%20Disclosure%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":0,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20235","cvss":4.9,"epss":0.00285,"epss_percentile":0.19104,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":4.9,"epss_max":0.00285,"source_count":2,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":268,"title":"Cisco Identity Services Engine Command Injection Vulnerabilities","original_title":"Cisco Identity Services Engine Command Injection Vulnerabilities","source_rating":null,"summary":"Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to perform command injection attacks…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-cmd-inj-e2CuZCYZ?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Command%20Injection%20Vulnerabilities%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":15,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20305","cvss":9.1,"epss":0.01406,"epss_percentile":0.71636,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20306","cvss":9.1,"epss":0.01367,"epss_percentile":0.70881,"in_kev":false,"kev_ransomware":false}],"cve_count":2,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":9.1,"epss_max":0.01406,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":256,"title":"Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities","original_title":"Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities","source_rating":null,"summary":"Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct SQL injections, modify data, or execute arbitrary commands on the underlying…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-mult-vul-ymSsTLCc?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Authenticated%20Remote%20Code%20Execution%20and%20API%20Vulnerabilities%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":15,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20282","cvss":4.9,"epss":0.00557,"epss_percentile":0.44409,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20283","cvss":6.5,"epss":0.00435,"epss_percentile":0.35508,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20284","cvss":9.1,"epss":0.00391,"epss_percentile":0.30855,"in_kev":false,"kev_ransomware":false}],"cve_count":3,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":9.1,"epss_max":0.00557,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":264,"title":"Cisco Secure Firewall Threat Defense Software Snort 2 SSL/TLS Denial of Service Vulnerability","original_title":"Cisco Secure Firewall Threat Defense Software Snort 2 SSL/TLS Denial of Service Vulnerability","source_rating":null,"summary":"A vulnerability in SSL/TLS certificate parsing in the Snort 2 Detection Engine of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ftd-snort2-ssldos-Mw7WYX9c?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Firewall%20Threat%20Defense%20Software%20Snort%202%20SSL/TLS%20Denial%20of%20Service%20Vulnerability%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":0,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20290","cvss":5.8,"epss":0.0019,"epss_percentile":0.07777,"in_kev":false,"kev_ransomware":false}],"cve_count":1,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":5.8,"epss_max":0.0019,"source_count":1,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null},{"id":265,"title":"Cisco Identity Services Engine Hardening Release: September 2026","original_title":"Cisco Identity Services Engine Hardening Release: September 2026","source_rating":null,"summary":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) engineering teams have…","ai":false,"actions":[],"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-ise-XU5EwX5T?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Identity%20Services%20Engine%20Hardening%20Release:%20September%202026%26vs_k=1","type":"advisory","language":"en","published_at":"2026-09-16T16:00:00+00:00","severity":"laag","priority":15,"vendors":["Cisco"],"cves":[{"id":"CVE-2026-20192","cvss":10.0,"epss":0.00458,"epss_percentile":0.37456,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20194","cvss":9.1,"epss":0.00446,"epss_percentile":0.36512,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20130","cvss":10.0,"epss":0.00395,"epss_percentile":0.31376,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20234","cvss":9.9,"epss":0.00373,"epss_percentile":0.2886,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20237","cvss":9.1,"epss":0.00328,"epss_percentile":0.23589,"in_kev":false,"kev_ransomware":false},{"id":"CVE-2026-20287","cvss":6.5,"epss":0.00213,"epss_percentile":0.10487,"in_kev":false,"kev_ransomware":false}],"cve_count":6,"in_kev":false,"exploited_by":[],"kev_ransomware":false,"cvss_max":10.0,"epss_max":0.00458,"source_count":2,"ncsc":null,"source":{"slug":"cisco-psirt","name":"Cisco PSIRT","category":"vendor","country":null,"license":"© Cisco","reuse":"excerpt"},"bundle":null}]}