Vulnerability index

Browse CVEs

323 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ios Xe CRITICAL 9.8
CVE-2026-20272

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehen…

No fix yet
Fix from $2,300 2026-08-05
Ios Xe CRITICAL 9.0
CVE-2026-20267

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehen…

No fix yet
Fix from $2,300 2026-08-05
Roomos CRITICAL 9.8
CVE-2026-20156

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive inte…

Fix: 11.32.6.0 / 11.39.1.1+
Fix from $2,300 2026-07-15
Roomos CRITICAL 9.8
CVE-2026-20157

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco RoomOS engineering team has conducted a comprehensive inte…

Fix: 11.32.6.0 / 11.39.1.1+
Fix from $2,300 2026-07-15
Identity Services Engine CRITICAL 9.1
CVE-2026-20181

A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating syst…

Fix: 3.3.0+
Fix from $2,300 2026-06-17
Secure Workload CRITICAL 10.0
CVE-2026-20223

A vulnerability in the access validation of internal REST APIs of Cisco Secure Workload could allow an unauthenticated, remote attacker to acces…

Fix: 3.10.8.3 / 4.0.3.17+
Fix from $2,300 2026-05-20
Catalyst Sd Wan Manager CRITICAL 10.0
CVE-2026-20182 KEVEPSS 92%

May 2026: This security advisory provides the details and fix information for a vulnerability that was discovered and fixed after the was disclosed …

Fix: 20.9.9.1 / 20.12.5.4+
Fix from $2,300 2026-05-14
Identity Services Engine CRITICAL 9.9
CVE-2026-20180EPSS 6%

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying…

Fix: 3.2.0+
Fix from $2,300 2026-04-15
Identity Services Engine CRITICAL 9.9
CVE-2026-20186EPSS 6%

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying…

Fix: 3.2.0+
Fix from $2,300 2026-04-15
Identity Services Engine Passive Identity Connector CRITICAL 9.9
CVE-2026-20147EPSS 12%

A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operatin…

Fix: 3.1.0+
Fix from $2,300 2026-04-15
Smart Software Manager On Prem CRITICAL 9.8
CVE-2026-20160

A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to execute arbitrary commands o…

Fix: 9-202601+
Fix from $2,300 2026-04-01
Secure Firewall Management Center CRITICAL 10.0
CVE-2026-20131 KEVEPSS 31%

A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remot…

Mitigation only
Fix from $2,300 2026-03-04
Catalyst Sd Wan Manager CRITICAL 9.8
CVE-2026-20129

A vulnerability in the API user authentication of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain access to an …

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $2,300 2026-02-25
Catalyst Sd Wan Manager CRITICAL 10.0
CVE-2026-20127 KEVEPSS 88%

A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, Cisco Catalyst SD-WAN Manager, formerly SD…

Fix: 20.9.8.2 / 20.12.5.3+
Fix from $2,300 2026-02-25
Skill Scanner CRITICAL 9.1
CVE-2026-26057

Skill Scanner is a security scanner for AI Agent Skills that detects prompt injection, data exfiltration, and malicious code patterns. A vulnerabilit…

Fix: 1.0.2+
Fix from $2,300 2026-02-19
Unified Communications Manager CRITICAL 9.8
CVE-2026-20045 KEV

A vulnerability in Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME…

Fix: 14su5+
Fix from $2,300 2026-01-21
Asyncos CRITICAL 10.0
CVE-2025-20393 KEVEPSS 30%

A vulnerability in the Spam Quarantine feature of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Email and Web Manager could …

Fix: 15.0.2-007 / 15.0.5-016+
Fix from $2,300 2025-12-17
Unified Contact Center Express CRITICAL 9.8
CVE-2025-20358

A vulnerability in the Contact Center Express (CCX) Editor application of Cisco Unified CCX could allow an unauthenticated, remote attacker to bypass…

Fix: 12.5+
Fix from $2,300 2025-11-05
Unified Contact Center Express CRITICAL 9.8
CVE-2025-20354

A vulnerability in the Java Remote Method Invocation (RMI) process of Cisco Unified CCX could allow an unauthenticated, remote attacker to upload arb…

Fix: 12.5+
Fix from $2,300 2025-11-05
Adaptive Security Appliance Software CRITICAL 9.9
CVE-2025-20333 KEVEPSS 40%

A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (F…

Fix: 7.0.8.1 / 7.2.9+
Fix from $2,300 2025-09-25
Ios Xr CRITICAL 9.0
CVE-2025-20363EPSS 8%

A vulnerability in the web services of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat Defense (FTD) S…

Fix: 7.0.8 / 7.2.10+
Fix from $2,300 2025-09-25
Secure Firewall Management Center CRITICAL 10.0
CVE-2025-20265EPSS 15%

A vulnerability in the RADIUS subsystem implementation of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remo…

Mitigation only
Fix from $2,300 2025-08-14
Identity Services Engine CRITICAL 10.0
CVE-2025-20337 KEVEPSS 66%

A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the und…

Mitigation only
Fix from $2,300 2025-07-16
Unified Communications Manager CRITICAL 10.0
CVE-2025-20309

A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM …

Patch available
Fix from $2,300 2025-07-02
Identity Services Engine CRITICAL 10.0
CVE-2025-20282EPSS 27%

A vulnerability in an internal API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to upload arbitrary files to an aff…

Mitigation only
Fix from $2,300 2025-06-25
Identity Services Engine CRITICAL 10.0
CVE-2025-20281 KEVEPSS 97%

A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the und…

Mitigation only
Fix from $2,300 2025-06-25
Identity Services Engine CRITICAL 9.8
CVE-2025-20286

A vulnerability in Amazon Web Services (AWS), Microsoft Azure, and Oracle Cloud Infrastructure (OCI) cloud deployments of Cisco Identity Services Eng…

Mitigation only
Fix from $2,300 2025-06-04
Unified Contact Center Enterprise CRITICAL 9.1
CVE-2025-20242EPSS 6%

A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to re…

Mitigation only
Fix from $2,300 2025-05-21
Ios Xe CRITICAL 9.1
CVE-2025-20221

A vulnerability in the packet filtering features of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to bypass Layer 3 an…

Mitigation only
Fix from $2,300 2025-05-07
Ios Xe CRITICAL 10.0
CVE-2025-20188EPSS 27%

A vulnerability in the Out-of-Band Access Point (AP) Image Download, the Clean Air Spectral Recording, and the client debug bundles features of Cisco…

Mitigation only
Fix from $2,300 2025-05-07