| CVE-2026-20223 | 10 | critical | cisco / secure workload | A vulnerability in the access validation of internal REST APIs of Cisco Secure Workload could allow an unauth | 108d ago |
| CVE-2026-20182exploited | 10 | critical | cisco / catalyst sd-wan manager | May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered | 114d ago |
| CVE-2026-20272 | 9.8 | critical | cisco / ios xe | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software enginee | 31d ago |
| CVE-2026-20181 | 9.1 | critical | cisco / identity services engine | A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary comman | 80d ago |
| CVE-2026-20267 | 9 | critical | cisco / ios xe | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software enginee | 31d ago |
| CVE-2026-76389 | 8.8 | high | cisco / talos intelligence for enterprise security cloud | In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, a user that holds a role with the | 17d ago |
| CVE-2026-20200 | 8.8 | high | cisco / unified computing system | A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker w | 31d ago |
| CVE-2026-20150 | 8.8 | high | cisco / roomos | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team | 52d ago |
| CVE-2026-20046 | 8.8 | high | cisco / ios xr | A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authen | 178d ago |
| CVE-2026-20040 | 8.8 | high | cisco / ios xr | A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to execute arbitr | 178d ago |
| CVE-2026-20349exploited | 8.6 | high | cisco / adaptive security appliance software | A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) S | 25d ago |
| CVE-2026-20273 | 8.6 | high | cisco / ios xe | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software enginee | 31d ago |
| CVE-2026-20271 | 8.6 | high | cisco / ios xe | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software enginee | 31d ago |
| CVE-2026-20270 | 8.6 | high | cisco / ios xe | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software enginee | 31d ago |
| CVE-2026-20269 | 8.6 | high | cisco / ios xe | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software enginee | 31d ago |
| CVE-2026-20268 | 8.6 | high | cisco / ios xe | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software enginee | 31d ago |
| CVE-2026-20230exploited | 8.6 | high | cisco / unified communications manager | A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Sess | 94d ago |
| CVE-2026-20224 | 8.6 | high | cisco / catalyst sd-wan manager | A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenti | 114d ago |
| CVE-2026-20156 | 8.1 | high | cisco / roomos | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team | 52d ago |
| CVE-2026-20245exploited | 7.8 | high | cisco / catalyst sd-wan manager | A vulnerability in the CLI of Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Mana | 93d ago |
| CVE-2026-20348 | 7.5 | high | cisco / secure endpoint | A vulnerability in the XAR file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a | 29d ago |
| CVE-2026-20187 | 7.5 | high | cisco / roomos | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team | 52d ago |
| CVE-2026-20158 | 7.5 | high | cisco / roomos | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team | 52d ago |
| CVE-2026-20157 | 7.5 | high | cisco / roomos | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team | 52d ago |
| CVE-2026-20153 | 7.5 | high | cisco / roomos | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team | 52d ago |
| CVE-2026-20244 | 7.5 | high | cisco / secure endpoint | A vulnerability in the DMG file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a | 66d ago |
| CVE-2026-20243 | 7.5 | high | cisco / secure endpoint | A vulnerability in the ALZ file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a | 66d ago |
| CVE-2026-20217 | 7.5 | high | cisco / secure endpoint | A vulnerability in the PESpin file format parser of ClamAV could allow an unauthenticated, remote attacker to caus | 66d ago |
| CVE-2026-20216 | 7.5 | high | cisco / secure endpoint | A vulnerability in the InstallShield file format parser of ClamAV could allow an unauthenticated, remote attacker | 66d ago |
| CVE-2026-20215 | 7.5 | high | cisco / secure endpoint | A vulnerability in the 7z file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a | 66d ago |
| CVE-2026-20214 | 7.5 | high | cisco / secure endpoint | A vulnerability in the FSG file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a | 66d ago |
| CVE-2026-20213 | 7.5 | high | cisco / secure endpoint | A vulnerability in the PE file format parser of ClamAV could allow an unauthenticated, remote attacker to cause a | 66d ago |
| CVE-2026-20190 | 7.5 | high | cisco / identity services engine | A vulnerability in Cisco ISE and ISE-PIC could allow an unauthenticated, remote attacker to view sensitive informa | 80d ago |
| CVE-2026-20074 | 7.4 | high | cisco / ios xr | A vulnerability in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing feature of Cisco | 178d ago |
| CVE-2026-24700 | 7.2 | high | cisco / rv130 firmware | An OS command injection vulnerability exists in the start_lltd() function of the "rc" binary in Cisco RV130/RV130W | 59d ago |
| CVE-2026-24699 | 7.2 | high | cisco / rv130 firmware | An OS command injection vulnerability exists in the sub_34984() function of the "rc" binary in Cisco RV130/RV130W | 59d ago |
| CVE-2026-24698 | 7.2 | high | cisco / rv130 firmware | An OS command injection vulnerability exists in the save_syslog_to_file() function of the "httpd" binary in Cisco | 59d ago |
| CVE-2026-24697 | 7.2 | high | cisco / rv130 firmware | An OS command injection vulnerability exists in the start_bonjour() function of the "rc" binary in Cisco RV130/RV1 | 59d ago |
| CVE-2026-20262exploited | 6.5 | medium | cisco / catalyst sd-wan manager | A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authentica | 82d ago |
| CVE-2026-20117 | 6.1 | medium | cisco / unified contact center express | A vulnerability in the web-based management interface of Cisco Unified Contact Center Express (Unified CCX) could | 178d ago |
| CVE-2026-20316exploited | 5.3 | medium | cisco / secure firewall management center | A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unau | 38d ago |