CISCO has released critical security patches addressing multiple vulnerabilities in its IOS XR operating system, with a maximum CVSS score of 9.8 for two flaws. Network operators are urged to apply Software Maintenance Updates immediately to secure carrier routers and prevent potential network disruptions. The vulnerability roundup includes 7 CVEs—2 classified as Critical and 5 as High. Notable CVEs include CVE-2026-20274 and CVE-2026-20279.
These vulnerabilities affect all releases of Cisco IOS XR Software and pose significant threats to international communications. Administrators are advised that there are no workarounds, and they must apply the vendor patches to resolve these issues.