CISCO has released patches for 24 vulnerabilities across its products, focusing on critical bugs in Catalyst SD-WAN, IOS XE, and Secure Firewall Management Center (FMC). Key issues include critical CVEs with very high CVSS scores, such as CVE-2026-20303 and CVE-2026-20310 in Catalyst SD-WAN, and CVE-2026-20079 in FMC, which allows remote unauthenticated access for script execution.
The company has implemented fixes for various high and medium severity flaws across several platforms, including the Integrated Management Controller (IMC) and Command Injection vulnerabilities in IOS XE. No evidence of exploitation of these vulnerabilities has been reported.