chiprook
← Security
SecurityOctober 1, 2026, 15:26

Cisco Patches Exploited Catalyst SD-WAN Zero-Day

Cisco released urgent patches for a critical authentication bypass, CVE-2026-76504 (CVSS 9.8), in Catalyst SD-WAN Manager that lets unauthenticated attackers gain admin API access. The flaw is already exploited in the wild, and CISA added it to its KEV catalog, ordering federal agencies to patch within three days.

Cisco Patches Exploited Catalyst SD-WAN Zero-Day
#Cisco#CISA
Read next
Security

Cisco warns of active exploitation of CVSS 9.8 SD-WAN Manager auth bypass

Security

F5 patches exploited BIG-IP APM zero-day enabling RCE

Security

CISA Gives Agencies 3 Days to Patch Exploited Pixel Zero-Day

Security

Cisco's two exploited flaws and CISA's patch clock