SECURITYTHE HACKER NEWS
Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw
Cisco has released security updates to address a medium-severity vulnerability (CVE-2026-20262) in its Catalyst SD-WAN Manager, which is being actively exploited. The flaw allows an authenticated remote attacker to create files via the web UI, with a CVSS score of 6.5.
Related Signal
Adjacent reporting
- Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication
- Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks
- Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621
- MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution Attacks
- Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available
- PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation