<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Cisco</title><description>Cybersecurity articles tagged #Cisco on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Cisco Patches Nine Crosswork and Secure Workload Flaws</title><link>https://runtimerebel.com/blog/cisco-patches-nine-crosswork-and-secure-workload-flaws</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-patches-nine-crosswork-and-secure-workload-flaws</guid><description>Cisco patches nine vulnerabilities in Crosswork and Secure Workload platforms, with five flaws scoring the maximum CVSS 10.0 severity rating.</description><pubDate>Sun, 23 Aug 2026 00:43:17 GMT</pubDate><category>Cisco</category><category>Vulnerabilities</category><category>Zero-Day</category><category>Network Security</category><category>Patch Management</category></item><item><title>Cisco FMC CVE-2026-20316: Static Credentials Actively Exploited</title><link>https://runtimerebel.com/blog/cisco-fmc-cve-2026-20316-static-credentials-actively-exploited</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-fmc-cve-2026-20316-static-credentials-actively-exploited</guid><description>CISA adds CVE-2026-20316 to its Known Exploited Vulnerabilities catalog following active exploitation of static credentials in Cisco Firewall Management Center.</description><pubDate>Thu, 30 Jul 2026 06:29:42 GMT</pubDate><category>CVE-2026-20316</category><category>Cisco</category><category>Firewall Management Center</category><category>CISA KEV</category><category>Static Credentials</category></item><item><title>Russian APTs Target Critical Infrastructure via Edge Device Exploits</title><link>https://runtimerebel.com/blog/russian-apts-target-critical-infrastructure-via-edge-device-exploits</link><guid isPermaLink="true">https://runtimerebel.com/blog/russian-apts-target-critical-infrastructure-via-edge-device-exploits</guid><description>US and allies warn of Russian state-sponsored actors targeting edge devices to infiltrate critical infrastructure. Learn how to mitigate these threats.</description><pubDate>Mon, 13 Jul 2026 11:21:02 GMT</pubDate><category>APT28</category><category>Sandworm</category><category>Cisco</category><category>Critical Infrastructure</category><category>Edge Security</category></item><item><title>Cisco Secures Non-Human Identity with Astrix and WideField</title><link>https://runtimerebel.com/blog/cisco-secures-non-human-identity-with-astrix-and-widefield</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-secures-non-human-identity-with-astrix-and-widefield</guid><description>Cisco&apos;s acquisition of Astrix and WideField signals a strategic shift toward Non-Human Identity (NHI) as a critical control plane for securing cloud access.</description><pubDate>Sat, 27 Jun 2026 09:01:11 GMT</pubDate><category>Cisco</category><category>Astrix Security</category><category>WideField</category><category>Non Human Identity</category><category>NHI</category><category>Identity Security</category><category>Cloud Security</category></item><item><title>Cisco Catalyst SD-WAN CVE-2026-20245 Root Access Exploit Analysis</title><link>https://runtimerebel.com/blog/cisco-catalyst-sd-wan-cve-2026-20245-root-access-exploit-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-catalyst-sd-wan-cve-2026-20245-root-access-exploit-analysis</guid><description>Exploitation of Cisco Catalyst SD-WAN zero-day CVE-2026-20245 allows root access. Mandiant reveals active abuse months prior to the June 2026 disclosure.</description><pubDate>Thu, 25 Jun 2026 09:13:27 GMT</pubDate><category>CVE-2026-20245</category><category>Cisco</category><category>SD WAN</category><category>Zero-Day</category><category>Mandiant</category><category>Privilege Escalation</category></item><item><title>Cisco Unified CM CVE-2026-20230: File-Write Path to Root Exploited</title><link>https://runtimerebel.com/blog/cisco-unified-cm-cve-2026-20230-file-write-path-to-root-exploited</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-unified-cm-cve-2026-20230-file-write-path-to-root-exploited</guid><description>Exploitation of CVE-2026-20230 in Cisco Unified CM allows unauthenticated root access via file-write. Critical security updates are required to prevent compromise.</description><pubDate>Wed, 24 Jun 2026 09:16:45 GMT</pubDate><category>CVE-2026-20230</category><category>Cisco</category><category>Unified CM</category><category>RCE</category><category>File Write</category></item><item><title>Cisco Acquires WideField Security to Advance Splunk Agentic SOC</title><link>https://runtimerebel.com/blog/cisco-acquires-widefield-security-to-advance-splunk-agentic-soc</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-acquires-widefield-security-to-advance-splunk-agentic-soc</guid><description>Cisco expands its security portfolio by acquiring WideField Security to integrate identity and session context into Splunk’s AI-driven Agentic SOC platform.</description><pubDate>Fri, 19 Jun 2026 09:45:25 GMT</pubDate><category>Cisco</category><category>Splunk</category><category>WideField Security</category><category>Agentic SOC</category><category>Identity Security</category></item><item><title>Cisco Catalyst SD-WAN Manager CVE-2026-20262 Exploited in the Wild</title><link>https://runtimerebel.com/blog/cisco-catalyst-sd-wan-manager-cve-2026-20262-exploited-in-the-wild</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-catalyst-sd-wan-manager-cve-2026-20262-exploited-in-the-wild</guid><description>Cisco patches an actively exploited medium-severity vulnerability in Catalyst SD-WAN Manager (CVE-2026-20262) that allows authenticated file creation.</description><pubDate>Tue, 16 Jun 2026 09:54:16 GMT</pubDate><category>CVE-2026-20262</category><category>Cisco</category><category>SD WAN</category><category>vManage</category></item><item><title>CVE-2026-20262: Cisco SD-WAN vManage Root Privilege Escalation Fix</title><link>https://runtimerebel.com/blog/cve-2026-20262-cisco-sd-wan-vmanage-root-privilege-escalation-fix</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-20262-cisco-sd-wan-vmanage-root-privilege-escalation-fix</guid><description>Cisco patches CVE-2026-20262, a critical Zero-Day flaw in Catalyst SD-WAN Manager allowing authenticated attackers to escalate to root privileges.</description><pubDate>Mon, 15 Jun 2026 17:48:52 GMT</pubDate><category>CVE-2026-20262</category><category>Cisco</category><category>SD WAN</category><category>Privilege Escalation</category><category>Zero-Day</category></item><item><title>Cybersecurity M&amp;A Analysis: Market Consolidation Trends May 2026</title><link>https://runtimerebel.com/blog/cybersecurity-m-a-analysis-market-consolidation-trends-may-2026</link><guid isPermaLink="true">https://runtimerebel.com/blog/cybersecurity-m-a-analysis-market-consolidation-trends-may-2026</guid><description>Analysis of 26 major cybersecurity M&amp;A deals in May 2026 involving Cisco, Zscaler, and Akamai, highlighting industry consolidation and strategic shifts.</description><pubDate>Mon, 08 Jun 2026 13:37:19 GMT</pubDate><category>Mergers and Acquisitions</category><category>Cisco</category><category>Zscaler</category><category>Akamai</category><category>Market Analysis</category></item><item><title>Cisco Catalyst SD-WAN Manager RCE via CVE-2024-20468 — Patch Now</title><link>https://runtimerebel.com/blog/cisco-catalyst-sd-wan-manager-rce-via-cve-2024-20468-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-catalyst-sd-wan-manager-rce-via-cve-2024-20468-patch-now</guid><description>Cisco warns of a high-severity zero-day vulnerability in Catalyst SD-WAN Manager, tracked as CVE-2024-20468, currently exploited for root privilege escalation.</description><pubDate>Fri, 05 Jun 2026 09:17:03 GMT</pubDate><category>Cisco</category><category>SD WAN</category><category>CVE-2024-20468</category><category>Privilege Escalation</category><category>Zero-Day</category></item><item><title>Cisco Unified CM RCE via CVE-2026-20230 — Mitigation Guide</title><link>https://runtimerebel.com/blog/cisco-unified-cm-rce-via-cve-2026-20230-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-unified-cm-rce-via-cve-2026-20230-mitigation-guide</guid><description>Cisco patches CVE-2026-20230, a high-severity SSRF in Unified Communications Manager. Learn how public PoC code impacts your security and find remediation steps.</description><pubDate>Thu, 04 Jun 2026 17:08:33 GMT</pubDate><category>Cisco</category><category>CVE-2026-20230</category><category>Unified CM</category><category>RCE</category><category>SSRF</category></item><item><title>CVE-2024-20469: Critical Cisco Unified CM Root Escalation Risk</title><link>https://runtimerebel.com/blog/cve-2024-20469-critical-cisco-unified-cm-root-escalation-risk</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-20469-critical-cisco-unified-cm-root-escalation-risk</guid><description>Cisco patches a critical SQL injection flaw (CVE-2024-20469) in Unified Communications Manager that allows remote attackers to gain full root-level access.</description><pubDate>Thu, 04 Jun 2026 13:16:01 GMT</pubDate><category>Cisco</category><category>CVE-2024-20469</category><category>Unified CM</category><category>RCE</category><category>Privilege Escalation</category></item><item><title>Cisco Unified CM SSRF CVE-2024-20455 — Public PoC Mitigation Guide</title><link>https://runtimerebel.com/blog/cisco-unified-cm-ssrf-cve-2024-20455-public-poc-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-unified-cm-ssrf-cve-2024-20455-public-poc-mitigation-guide</guid><description>Cisco warns of critical SSRF vulnerabilities in Unified CM with public PoC exploit code. Learn how to detect and patch CVE-2024-20455 to protect your network.</description><pubDate>Thu, 04 Jun 2026 09:26:39 GMT</pubDate><category>Cisco</category><category>CVE-2024-20455</category><category>Unified CM</category><category>SSRF</category><category>Vulnerability Management</category></item><item><title>Microsoft Exchange Zero-Day and npm Supply Chain Worm Under Active Use</title><link>https://runtimerebel.com/blog/microsoft-exchange-zero-day-and-npm-supply-chain-worm-under-active-use</link><guid isPermaLink="true">https://runtimerebel.com/blog/microsoft-exchange-zero-day-and-npm-supply-chain-worm-under-active-use</guid><description>Critical security briefing on the active exploitation of an Exchange Server zero-day, npm supply chain worms, and Cisco network control vulnerabilities.</description><pubDate>Mon, 18 May 2026 17:03:13 GMT</pubDate><category>Exchange Server</category><category>NPM</category><category>Supply Chain Attack</category><category>Cisco</category><category>Zero-Day</category></item><item><title>Cisco Catalyst SD-WAN Authentication Bypass: CVE-2026-20182 Exploit</title><link>https://runtimerebel.com/blog/cisco-catalyst-sd-wan-authentication-bypass-cve-2026-20182-exploit</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-catalyst-sd-wan-authentication-bypass-cve-2026-20182-exploit</guid><description>CISA adds CVE-2026-20182 to its KEV catalog after reports of active exploitation against Cisco Catalyst SD-WAN Controllers. Critical patch required.</description><pubDate>Fri, 15 May 2026 09:11:50 GMT</pubDate><category>CVE-2026-20182</category><category>Cisco</category><category>SD WAN</category><category>CISA KEV</category><category>Authentication Bypass</category></item><item><title>Cisco Crosswork &amp; NSO DoS: Manual Reboot Needed Post-Exploit</title><link>https://runtimerebel.com/blog/cisco-crosswork-nso-dos-manual-reboot-needed-post-exploit</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-crosswork-nso-dos-manual-reboot-needed-post-exploit</guid><description>Cisco Crosswork Network Controller and Network Services Orchestrator are vulnerable to a denial-of-service flaw, necessitating manual reboots for recovery.</description><pubDate>Wed, 06 May 2026 20:36:45 GMT</pubDate><category>Cisco</category><category>DoS</category><category>Crosswork Network Controller</category><category>Network Services Orchestrator</category><category>Denial of Service</category></item><item><title>Cisco Acquires Astrix: Tackling Non-Human Identity Risks for AI &amp; Machines</title><link>https://runtimerebel.com/blog/cisco-acquires-astrix-tackling-non-human-identity-risks-for-ai-machines</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-acquires-astrix-tackling-non-human-identity-risks-for-ai-machines</guid><description>Cisco&apos;s acquisition of Astrix Security targets emerging non-human identity risks in AI and machine access, enhancing identity-centric security for cloud environments.</description><pubDate>Mon, 04 May 2026 20:36:01 GMT</pubDate><category>Cisco</category><category>Astrix Security</category><category>Non Human Identity</category><category>Machine Identity</category><category>AI Security</category><category>Cloud Security</category></item><item><title>Anthropic AI Agent Memory Vulnerability: Data Exposure Risks</title><link>https://runtimerebel.com/blog/anthropic-ai-agent-memory-vulnerability-data-exposure-risks</link><guid isPermaLink="true">https://runtimerebel.com/blog/anthropic-ai-agent-memory-vulnerability-data-exposure-risks</guid><description>Cisco discovered a significant memory handling vulnerability in Anthropic AI agents, risking data exposure. This highlights persistent security challenges in AI systems.</description><pubDate>Thu, 23 Apr 2026 16:43:20 GMT</pubDate><category>Anthropic</category><category>AI Security</category><category>Memory Management</category><category>Data Exposure</category><category>Cisco</category></item><item><title>CISA KEV Expansion: Exploit Guidance for Cisco, Kentico, and Zimbra</title><link>https://runtimerebel.com/blog/cisa-kev-expansion-exploit-guidance-for-cisco-kentico-and-zimbra</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-kev-expansion-exploit-guidance-for-cisco-kentico-and-zimbra</guid><description>CISA adds 8 vulnerabilities to the KEV catalog, including critical flaws in Cisco ASA and Zimbra. Analyze technical impact and remediation requirements.</description><pubDate>Tue, 21 Apr 2026 12:33:32 GMT</pubDate><category>CVE-2024-20481</category><category>CVE-2024-45519</category><category>CVE-2024-29847</category><category>Cisco</category><category>Zimbra</category><category>Ivanti</category></item><item><title>CISA KEV Update: Eight New Vulnerabilities in Cisco, TeamCity, and Zimbra</title><link>https://runtimerebel.com/blog/cisa-kev-update-eight-new-vulnerabilities-in-cisco-teamcity-and-zimbra</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-kev-update-eight-new-vulnerabilities-in-cisco-teamcity-and-zimbra</guid><description>CISA adds eight vulnerabilities to the KEV Catalog, including flaws in Cisco SD-WAN and JetBrains TeamCity, requiring immediate federal agency remediation.</description><pubDate>Tue, 21 Apr 2026 08:44:49 GMT</pubDate><category>CISA KEV</category><category>Cisco</category><category>TeamCity</category><category>CVE-2026-20122</category><category>PaperCut</category><category>Zimbra</category></item><item><title>Cisco Webex Services CVE-2024-20419: Manual Patch Guidance</title><link>https://runtimerebel.com/blog/cisco-webex-services-cve-2024-20419-manual-patch-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-webex-services-cve-2024-20419-manual-patch-guidance</guid><description>Cisco identifies a critical improper certificate validation flaw in Webex Services. This advisory details the required manual remediation steps for admins.</description><pubDate>Thu, 16 Apr 2026 12:32:04 GMT</pubDate><category>Cisco</category><category>Webex</category><category>CVE-2024-20419</category><category>Certificate Validation</category><category>Man-in-the-Middle</category></item><item><title>Cisco Patches Critical RCE and SSO Flaws in ISE and Webex Services</title><link>https://runtimerebel.com/blog/cisco-patches-critical-rce-and-sso-flaws-in-ise-and-webex-services</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-patches-critical-rce-and-sso-flaws-in-ise-and-webex-services</guid><description>Cisco releases patches for four critical vulnerabilities, including CVE-2026-20184, which allows RCE and user impersonation in Identity Services and Webex.</description><pubDate>Thu, 16 Apr 2026 12:30:42 GMT</pubDate><category>Cisco</category><category>CVE-2026-20184</category><category>Identity Services Engine</category><category>Webex</category><category>SSO</category><category>RCE</category></item><item><title>TeamPCP Supply Chain Campaign: Cisco Source Code Stolen, UNC6780 Activity</title><link>https://runtimerebel.com/blog/teampcp-supply-chain-campaign-cisco-source-code-stolen-unc6780-activity</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-supply-chain-campaign-cisco-source-code-stolen-unc6780-activity</guid><description>Analysis of the TeamPCP supply chain campaign, including the theft of Cisco source code and over 1,000 compromised SaaS environments tracked by Google GTIG as UNC6780.</description><pubDate>Thu, 09 Apr 2026 00:37:07 GMT</pubDate><category>TeamPCP</category><category>UNC6780</category><category>Supply Chain Attack</category><category>Cisco</category><category>Source Code Theft</category><category>Trivy</category><category>ShinyHunters</category><category>SaaS Compromise</category></item><item><title>Cisco IMC and SSM RCE via CVE-2026-20093 — Mitigation Guide</title><link>https://runtimerebel.com/blog/cisco-imc-and-ssm-rce-via-cve-2026-20093-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-imc-and-ssm-rce-via-cve-2026-20093-mitigation-guide</guid><description>Cisco patches a critical 9.8 CVSS vulnerability in Integrated Management Controller (IMC) allowing unauthenticated remote attackers to gain full system access.</description><pubDate>Thu, 02 Apr 2026 20:15:12 GMT</pubDate><category>Cisco</category><category>CVE-2026-20093</category><category>Authentication Bypass</category><category>RCE</category><category>Network Security</category></item><item><title>Cisco Source Code Stolen: Trivy Supply Chain Attack Leads to Breach</title><link>https://runtimerebel.com/blog/cisco-source-code-stolen-trivy-supply-chain-attack-leads-to-breach</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-source-code-stolen-trivy-supply-chain-attack-leads-to-breach</guid><description>Threat actors breached Cisco&apos;s dev environment using credentials from a Trivy supply chain attack, stealing proprietary and customer source code.</description><pubDate>Tue, 31 Mar 2026 20:18:39 GMT</pubDate><category>Cisco</category><category>Source Code Theft</category><category>Supply Chain Attack</category><category>Trivy</category><category>Stolen Credentials</category><category>Development Environment</category></item><item><title>CVE-2024-20481: Critical Cisco FMC RCE Exploited in the Wild</title><link>https://runtimerebel.com/blog/cve-2024-20481-critical-cisco-fmc-rce-exploited-in-the-wild</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-20481-critical-cisco-fmc-rce-exploited-in-the-wild</guid><description>CISA mandates federal agencies patch CVE-2024-20481, a 9.8 CVSS RCE vulnerability in Cisco Secure Firewall Management Center, following active exploitation.</description><pubDate>Fri, 20 Mar 2026 16:19:13 GMT</pubDate><category>CVE-2024-20481</category><category>Cisco</category><category>FMC</category><category>RCE</category><category>CISA KEV</category></item><item><title>CISA KEV Update: CVE-2025-66376 Zimbra and SharePoint Exploits</title><link>https://runtimerebel.com/blog/cisa-kev-update-cve-2025-66376-zimbra-and-sharepoint-exploits</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-kev-update-cve-2025-66376-zimbra-and-sharepoint-exploits</guid><description>CISA warns of active exploitation for Zimbra CVE-2025-66376, SharePoint flaws, and Cisco zero-days used in ransomware attacks. Secure your systems now.</description><pubDate>Thu, 19 Mar 2026 08:18:30 GMT</pubDate><category>CVE-2025-66376</category><category>Zimbra</category><category>SharePoint</category><category>CISA KEV</category><category>Cisco</category><category>Ransomware</category></item><item><title>Cisco IOS XR Software Vulnerabilities: CVE-2024-20320 Patch Guide</title><link>https://runtimerebel.com/blog/cisco-ios-xr-software-vulnerabilities-cve-2024-20320-patch-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-ios-xr-software-vulnerabilities-cve-2024-20320-patch-guide</guid><description>Cisco addresses high-severity vulnerabilities in IOS XR Software, including SSH privilege escalation and DoS flaws. Essential mitigation steps for network admins.</description><pubDate>Thu, 12 Mar 2026 12:21:12 GMT</pubDate><category>Cisco</category><category>Ios Xr</category><category>CVE-2024-20320</category><category>CVE-2024-20318</category><category>Network Infrastructure</category></item><item><title>CVE-2026-20127: Cisco Catalyst SD-WAN Exploited — Patch Guide</title><link>https://runtimerebel.com/blog/cve-2026-20127-cisco-catalyst-sd-wan-exploited-patch-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-20127-cisco-catalyst-sd-wan-exploited-patch-guide</guid><description>WatchTowr reports widespread exploitation attempts targeting a recent CVE-2026-20127 vulnerability in Cisco Catalyst SD-WAN devices, urging immediate action.</description><pubDate>Sun, 08 Mar 2026 16:22:56 GMT</pubDate><category>Cisco</category><category>Catalyst SD WAN</category><category>CVE-2026-20127</category><category>Exploitation</category></item><item><title>CVE-2026-20122: Cisco Catalyst SD-WAN Manager Exploited in the Wild</title><link>https://runtimerebel.com/blog/cve-2026-20122-cisco-catalyst-sd-wan-manager-exploited-in-the-wild</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-20122-cisco-catalyst-sd-wan-manager-exploited-in-the-wild</guid><description>Cisco confirms active exploitation of CVE-2026-20122 in Catalyst SD-WAN Manager, allowing authenticated attackers to perform arbitrary file overwrites.</description><pubDate>Thu, 05 Mar 2026 20:15:56 GMT</pubDate><category>Cisco</category><category>Catalyst SD WAN</category><category>CVE-2026-20122</category><category>Network Security</category><category>Exploitation</category></item><item><title>Cisco Catalyst SD-WAN Manager Exploitation: Patch CVE-2024-20437 Now</title><link>https://runtimerebel.com/blog/cisco-catalyst-sd-wan-manager-exploitation-patch-cve-2024-20437-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-catalyst-sd-wan-manager-exploitation-patch-cve-2024-20437-now</guid><description>Cisco confirms active exploitation of two high-severity flaws in Catalyst SD-WAN Manager, involving hardcoded credentials and authentication bypass.</description><pubDate>Thu, 05 Mar 2026 12:20:31 GMT</pubDate><category>Cisco</category><category>SD WAN</category><category>CVE-2024-20437</category><category>CVE-2024-20440</category><category>Exploitation</category></item><item><title>Cisco Catalyst SD-WAN Manager CVE-2023-20252 — Mitigation Guide</title><link>https://runtimerebel.com/blog/cisco-catalyst-sd-wan-manager-cve-2023-20252-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-catalyst-sd-wan-manager-cve-2023-20252-mitigation-guide</guid><description>Cisco warns of active exploitation targeting Catalyst SD-WAN Manager vulnerabilities CVE-2023-20252 and CVE-2023-20253. Immediate patching is required.</description><pubDate>Thu, 05 Mar 2026 12:19:33 GMT</pubDate><category>Cisco</category><category>SD WAN</category><category>CVE-2023-20252</category><category>CVE-2023-20253</category><category>Active Exploitation</category></item><item><title>Cisco SD-WAN Zero-Day CVE-2026-20127 Exploited for Admin Access</title><link>https://runtimerebel.com/blog/cisco-sd-wan-zero-day-cve-2026-20127-exploited-for-admin-access</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisco-sd-wan-zero-day-cve-2026-20127-exploited-for-admin-access</guid><description>CVE-2026-20127 is a critical CVSS 10.0 flaw in Cisco SD-WAN controllers exploited since 2023, allowing unauthenticated remote administrative access.</description><pubDate>Thu, 26 Feb 2026 08:18:56 GMT</pubDate><category>CVE-2026-20127</category><category>Cisco</category><category>SD WAN</category><category>vManage</category><category>vSmart</category><category>Zero-Day</category><category>Active Exploitation</category></item></channel></rss>